Vulnerabilities > F5 > BIG IP Access Policy Manager > 11.3.0

DATE CVE VULNERABILITY TITLE RISK
2013-10-01 CVE-2013-5976 Cross-Site Scripting vulnerability in F5 Big-Ip Access Policy Manager
Cross-site scripting (XSS) vulnerability in the access policy logout page (logout.inc) in F5 BIG-IP APM 10.1.0 through 10.2.4 and 11.1.0 through 11.3.0 allows remote attackers to inject arbitrary web script or HTML via the LastMRH_Session cookie.
network
f5 CWE-79
4.3
2012-10-17 CVE-2012-3163 Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.64 and earlier, and 5.5.26 and earlier, allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors related to Information Schema.
network
low complexity
oracle mariadb canonical debian redhat f5
critical
9.0