F5 BIG-IP APM systems vulnerable to critical remote code execution flaw | brief | SC Media

robot
Abstract generation in progress

A severe security flaw in F5’s BIG-IP APM systems, initially underestimated as a denial-of-service issue, has been reclassified as a critical remote code execution (RCE) threat with a severity score of 9.8 out of 10. The vulnerability, CVE-2025-53521, allows attackers to gain complete control of affected servers without authentication by planting malware. F5 has released indicators of compromise, urging customers to patch immediately or rebuild systems if a compromise is suspected.

This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments