CVE-2026-41953
HighRCE
Published: 13 May 2026
Published
13 May 2026
Modified
13 May 2026
KEV Added
—
Patch
—
CVSS Score
8.7
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:N
EPSS Score
0.0005
16.8th percentile
Risk Priority
17
60% EPSS · 20% KEV · 20% CVSS
Summary
CVE-2026-41953 is a high-severity Command Injection (CWE-77) vulnerability. Its CVSS base score is 8.7 (High).
Operationally, ranked at the 16.8th percentile by exploit likelihood (below the median); it is not currently listed in the CISA KEV catalog.
NVD Description
A vulnerability exists in BIG-IP systems where a highly privileged, authenticated attacker with at least the Resource Administrator role can modify configuration objects resulting in privilege escalation. Note: Software versions which have reached End of Technical Support (EoTS) are not…
more
evaluated.
Deeper analysisAI
Automated synthesis unavailable for this CVE.
Details
- CWE(s)
Affected Products
—
Software
inferred from references and description; NVD did not file a CPE for this CVE