CVE-2020-5902
In BIG-IP versions 15.0.0-15.1.0.3, 14.1.0-14.1.2.5, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, the Traffic Management User Interface...
Basic Information
- CVE State
- PUBLISHED
- Reserved Date
- January 06, 2020
- Published Date
- July 01, 2020
- Last Updated
- January 29, 2025
- Vendor
- n/a
- Product
- BIG-IP
- Description
- In BIG-IP versions 15.0.0-15.1.0.3, 14.1.0-14.1.2.5, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, the Traffic Management User Interface (TMUI), also referred to as the Configuration utility, has a Remote Code Execution (RCE) vulnerability in undisclosed pages.
CVSS Scores
SSVC Information
- Exploitation
- active
- Automatable
- Yes
- Technical Impact
- total
References
Known Exploited Vulnerability Information
Source | Added Date |
---|---|
CISA | 2021-11-03 00:00:00 UTC |
Scanner Integrations
Scanner | URL | Date Detected |
---|---|---|
Metasploit | https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/http/f5_bigip_tmui_rce_cve_2020_5902.rb | 2025-04-29 11:01:12 UTC |
Nuclei | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2020/CVE-2020-5902.yaml | 2025-04-26 00:00:00 UTC |
Potential Proof of Concepts
Warning: These PoCs have not been tested and could contain malware. Use at your own risk.
f5_bigip_tmui_rce_cve_2020_5902
Type: metasploit • Created: Unknown
amitlttwo/CVE-2020-5902
Type: github • Created: 2023-02-07 11:07:23 UTC • Stars: 1
z3n70/CVE-2020-5902
Type: github • Created: 2022-07-07 14:48:08 UTC • Stars: 2
haisenberg/CVE-2020-5902
Type: github • Created: 2021-04-13 06:48:20 UTC • Stars: 1
faisalfs10x/F5-BIG-IP-CVE-2020-5902-shodan-scanner
Type: github • Created: 2021-02-04 16:36:21 UTC • Stars: 1
murataydemir/CVE-2020-5902
Type: github • Created: 2020-08-13 08:27:25 UTC • Stars: 2
PushpenderIndia/CVE-2020-5902-Scanner
Type: github • Created: 2020-08-09 11:46:23 UTC • Stars: 13
corelight/CVE-2020-5902-F5BigIP
Type: github • Created: 2020-07-28 00:43:14 UTC • Stars: 4
rockmelodies/CVE-2020-5902-rce-gui
Type: github • Created: 2020-07-17 03:13:30 UTC • Stars: 8
Al1ex/CVE-2020-5902
Type: github • Created: 2020-07-11 14:01:08 UTC • Stars: 10
MrCl0wnLab/checker-CVE-2020-5902
Type: github • Created: 2020-07-10 07:00:35 UTC • Stars: 5
d4rk007/F5-Big-IP-CVE-2020-5902-mass-exploiter
Type: github • Created: 2020-07-09 08:34:37 UTC • Stars: 4
deepsecurity-pe/GoF5-CVE-2020-5902
Type: github • Created: 2020-07-09 06:09:39 UTC • Stars: 2
dnerzker/CVE-2020-5902
Type: github • Created: 2020-07-08 16:22:53 UTC • Stars: 0
zhzyker/CVE-2020-5902
Type: github • Created: 2020-07-08 04:02:07 UTC • Stars: 13
ajdumanhug/CVE-2020-5902
Type: github • Created: 2020-07-07 19:07:55 UTC • Stars: 0
k3nundrum/CVE-2020-5902
Type: github • Created: 2020-07-07 11:31:31 UTC • Stars: 0
0xAbdullah/CVE-2020-5902
Type: github • Created: 2020-07-06 14:41:29 UTC • Stars: 1
lijiaxing1997/CVE-2020-5902-POC-EXP
Type: github • Created: 2020-07-06 09:16:36 UTC • Stars: 10
cybersecurityworks553/scanner-CVE-2020-5902
Type: github • Created: 2020-07-06 06:58:29 UTC • Stars: 2
sv3nbeast/CVE-2020-5902_RCE
Type: github • Created: 2020-07-06 06:45:21 UTC • Stars: 8
dunderhay/CVE-2020-5902
Type: github • Created: 2020-07-06 04:03:58 UTC • Stars: 37
yasserjanah/CVE-2020-5902
Type: github • Created: 2020-07-06 01:12:23 UTC • Stars: 43
nsflabs/CVE-2020-5902
Type: github • Created: 2020-07-05 20:16:07 UTC • Stars: 8
rwincey/CVE-2020-5902-NSE
Type: github • Created: 2020-07-05 17:51:38 UTC • Stars: 8
yassineaboukir/CVE-2020-5902
Type: github • Created: 2020-07-05 17:01:27 UTC • Stars: 72
ar0dd/CVE-2020-5902
Type: github • Created: 2020-07-05 16:38:36 UTC • Stars: 12
jas502n/CVE-2020-5902
Type: github • Created: 2020-07-05 16:38:32 UTC • Stars: 373
aqhmal/CVE-2020-5902-Scanner
Type: github • Created: 2020-07-05 06:19:09 UTC • Stars: 55
dwisiswant0/CVE-2020-5902
Type: github • Created: 2020-07-04 14:12:57 UTC • Stars: 9