Vulnerability Details CVE-2012-3000
Multiple SQL injection vulnerabilities in sam/admin/reports/php/saveSettings.php in the (1) APM WebGUI in F5 BIG-IP LTM, GTM, ASM, Link Controller, PSM, APM, Edge Gateway, and Analytics and (2) AVR WebGUI in WebAccelerator and WOM 11.2.x before 11.2.0-HF3 and 11.2.x before 11.2.1-HF3 allow remote authenticated users to execute arbitrary SQL commands via the defaultQuery parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.013
EPSS Ranking 78.5%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2012-3000
-
cpe:2.3:a:f5:big-ip_access_policy_manager:11.1.0
-
cpe:2.3:a:f5:big-ip_access_policy_manager:11.2.0
-
cpe:2.3:a:f5:big-ip_access_policy_manager:11.2.1
-
cpe:2.3:a:f5:big-ip_analytics:11.0.0
-
cpe:2.3:a:f5:big-ip_analytics:11.1.0
-
cpe:2.3:a:f5:big-ip_analytics:11.2.0
-
cpe:2.3:a:f5:big-ip_analytics:11.2.1
-
cpe:2.3:a:f5:big-ip_application_security_manager:11.0.0
-
cpe:2.3:a:f5:big-ip_application_security_manager:11.1.0
-
cpe:2.3:a:f5:big-ip_application_security_manager:11.2.0
-
cpe:2.3:a:f5:big-ip_application_security_manager:11.2.1
-
cpe:2.3:a:f5:big-ip_edge_gateway:11.0.0
-
cpe:2.3:a:f5:big-ip_edge_gateway:11.1.0
-
cpe:2.3:a:f5:big-ip_edge_gateway:11.2.0
-
cpe:2.3:a:f5:big-ip_edge_gateway:11.2.1
-
cpe:2.3:a:f5:big-ip_global_traffic_manager:11.0.0
-
cpe:2.3:a:f5:big-ip_global_traffic_manager:11.1.0
-
cpe:2.3:a:f5:big-ip_global_traffic_manager:11.2.0
-
cpe:2.3:a:f5:big-ip_global_traffic_manager:11.2.1
-
cpe:2.3:a:f5:big-ip_link_controller:11.0.0
-
cpe:2.3:a:f5:big-ip_link_controller:11.1.0
-
cpe:2.3:a:f5:big-ip_link_controller:11.2.0
-
cpe:2.3:a:f5:big-ip_link_controller:11.2.1
-
cpe:2.3:a:f5:big-ip_local_traffic_manager:11.0.0
-
cpe:2.3:a:f5:big-ip_local_traffic_manager:11.1.0
-
cpe:2.3:a:f5:big-ip_local_traffic_manager:11.2.0
-
cpe:2.3:a:f5:big-ip_local_traffic_manager:11.2.1
-
cpe:2.3:a:f5:big-ip_protocol_security_module:11.0.0
-
cpe:2.3:a:f5:big-ip_protocol_security_module:11.1.0
-
cpe:2.3:a:f5:big-ip_protocol_security_module:11.2.0
-
cpe:2.3:a:f5:big-ip_protocol_security_module:11.2.1
-
cpe:2.3:a:f5:big-ip_wan_optimization_manager:11.0.0
-
cpe:2.3:a:f5:big-ip_wan_optimization_manager:11.1.0
-
cpe:2.3:a:f5:big-ip_wan_optimization_manager:11.2.0
-
cpe:2.3:a:f5:big-ip_wan_optimization_manager:11.2.1
-
cpe:2.3:a:f5:big-ip_webaccelerator:11.0.0
-
cpe:2.3:a:f5:big-ip_webaccelerator:11.1.0
-
cpe:2.3:a:f5:big-ip_webaccelerator:11.2.0
-
cpe:2.3:a:f5:big-ip_webaccelerator:11.2.1
-
cpe:2.3:h:f5:big-ip_access_policy_manager:11.0.0
-
cpe:2.3:h:f5:big-ip_access_policy_manager:11.1.0
-
cpe:2.3:h:f5:big-ip_access_policy_manager:11.2.0
-
cpe:2.3:h:f5:big-ip_access_policy_manager:11.2.1