CVE-2026-40631
An authenticated attacker with the Resource Administrator or Administrator role can modify configuration objects through iControl SOAP resulting in privilege escalation. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
- Vendor
- F5
- Product
- BIG-IP
- Provider severity
- HIGH, MEDIUM
- Conflicts
- 1