The U.S. Cybersecurity and Infrastructure Security Agency is warning that threat actors are exploiting a remote code execution vulnerability in F5’s BIG-IP network products. The vulnerability is tracked as CVE-2020-5902, which can allow attackers to exfiltrate data, access networks, carry out commands, create or delete files and disable services. Security firm Expanse warned that some 8,000 installations remained unpatched for this flaw. The agency has confirmed that two organizations have been compromised, but its investigating other attacks.”]
Source: https://www.inforisktoday.com/cisa-attackers-are-exploiting-f5-big-ip-vulnerability-a-14710