When running in Appliance mode, a command injection vulnerability exists in an undisclosed iControl REST and BIG-IP TMOS Shell (tmsh) command which may allow an authenticated attacker with administrator role privileges to execute arbitrary system commands. A successful exploit can allow the attacker to cross a security boundary. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Published: 2025-05-07
CVSS: 8.7
CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:N
Download Exploit for CVE-2025-31644 here:
Tip: Download official Tor Browser at https://www.torproject.org/download/ to access .onion links.
https://augustaverburg.nl/exploit-741-cve-2023-2255/
https://augustaverburg.nl/exploit-27-cve-2000-1200/
https://augustaverburg.nl/exploit-246-cve-2022-31646/
https://augustaverburg.nl/exploit-642-cve-2023-1932/
https://augustaverburg.nl/exploit-436-cve-2025-62372/
