CVE-2023-46747: F5 BIG-IP - Unauthenticated RCE via AJP Smuggling
HoneyLabs honeypots recorded 17 probes matching CVE-2023-46747 from 5 distinct source IP addresses in the last 7 days. Severity is rated critical.
This CVE is on CISA's Known Exploited Vulnerabilities list.
Request paths that identify it
- /tmui/login.jsp
- /mgmt/tm/auth/user
Addresses probing it
| Source IP | Probes | Network | Country |
|---|---|---|---|
| 94.154.43.7 | 6 | Storm Industries LLC | The Netherlands |
| 185.146.233.196 | 4 | FlokiNET ehf | Iceland |
| 193.221.201.142 | 3 | ALINDA LLC | Russia |
| 151.240.151.87 | 3 | Dedik Services Limited | Germany |
| 151.240.151.91 | 1 | Dedik Services Limited | Germany |
Networks it comes from
| ASN | Organisation | Probes | Source IPs |
|---|---|---|---|
| AS219502 | Storm Industries LLC | 6 | 1 |
| AS207043 | Dedik Services Limited | 4 | 2 |
| AS200651 | FlokiNET ehf | 4 | 1 |
| AS209946 | ALINDA LLC | 3 | 1 |
Captured requests
- /tmui/login.jsp
CVE report
CVE report
Open a specific CVE from the CVE tracker.