logo

CVE-2023-46747

ID: ce1cd74d-f236-5e4e-9d58-0b7bd8e5a674

STIX ID: report--ce1cd74d-f236-5e4e-9d58-0b7bd8e5a674

Feed Name: Arctic Wolf Blog

Threat Score
75/100

Date Published: 2023-10-27

Date Updated: 2026-04-27

...
...

On 2023-10-26 Arctic Wolf published an advisory describing a critical unauthenticated RCE (CVE-2023-46747) in F5 BIG-IP’s Traffic Management User Interface (TMUI) that allows bypassing configuration utility authentication and executing arbitrary commands if TMUI is Internet-exposed. The report lists affected versions and specific hotfixes, recommends applying F5 hotfixes or using F5’s mitigation script (with version limitations), and advises restricting access to the configuration utility and following F5 guidance; it notes no observed exploitation to date but warns a PoC and active exploitation are likely given prior similar incidents.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.