Back to Database
Status published
High
CVE-2023-22657
F5OS vulnerability
Vulnerability Description
On F5OS-A beginning in version 1.2.0 to before 1.3.0 and F5OS-C beginning in version 1.3.0 to before 1.5.0, processing F5OS tenant file names may allow for command injection. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-22657
Credits & Attribution
No credits recorded in the NVD database.
References
Affected Vendor
Affected Software
F5OS-A, F5OS-C
Vulnerable Versions:
1.2.0, 1.3.0
Timeline
Official Publish:
February 1st, 2023
Last Modified:
March 26th, 2025
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H