Timeline
F5
US network security vendor; BIG-IP APM CVE-2025-53521 reclassified from medium DoS to CVSS 9.8 unauthenticated RCE in March 2026 with 14,000+ exposed instances.
3 of 3 entries (2 events, 1 interactions)
Filters
#11 Apr
Failed to publish required data centre connection process by CRU-mandated 31 March 2026 deadline
Data Centres: Boom and Backlash: Pure DC's 110 MW Dublin microgrid skips queue#128 Mar
Reclassified CVE-2025-53521 from medium DoS to unauthenticated RCE CVSS 9.8 and confirmed memory-only web shell deployment
Cybersecurity: Threats and Defences: F5 reclassifies DoS bug to 9.8 RCE#128 Mar
“reclassified vulnerability severity”
Cybersecurity: Threats and Defences · source event