CVE-2020-5902
KEV RANSOMWAREHIGH 10.0EPSS 100.0%
In BIG-IP versions 15.0.0-15.1.0.3, 14.1.0-14.1.2.5, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, the Traffic Management User Interface (TMUI), also referred to as the Configuration utility, has a Remote Code Execution (RCE) vulnerability in undisclosed pages.
- CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - CVSS v2.0
- 10.0 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C - EPSS
- 100.00% chance of exploitation in the next 30 days, 100th percentile
- CISA KEV
- added 2021-11-03, used in ransomware campaigns
- Nuclei
- critical · CWE-22
- Published
- 2020-07-01
- Updated
- 2025-10-21
Proof-of-concept exploits (52)
- http://packetstormsecurity.com/files/158333/BIG-IP-TMUI-Remote-Code-Execution.html
- http://packetstormsecurity.com/files/158366/F5-BIG-IP-TMUI-Directory-Traversal-File-Uploa…
- http://packetstormsecurity.com/files/158581/F5-Big-IP-13.1.3-Build-0.0.6-Local-File-Inclu…
- http://packetstormsecurity.com/files/175671/F5-BIG-IP-TMUI-Directory-Traversal-File-Uploa…
- https://badpackets.net/over-3000-f5-big-ip-endpoints-vulnerable-to-cve-2020-5902/
- Critical-Start/Team-Ares/tree/master/CVE-2020-5902
- https://swarm.ptsecurity.com/rce-in-f5-big-ip/
- https://www.criticalstart.com/f5-big-ip-remote-code-execution-exploit/
- 0xAbdullah/CVE-2020-59021★ · 2020-07-07
- Al1ex/CVE-2020-590210★ · 2020-07-11
- Any3ite/CVE-2020-5902-F5BIG0★ · 2020-07-07
- CharonDefalt/F5-BIG-IP-TMUI-RCE-0★ · 2024-12-07
- JSec1337/RCE-CVE-2020-59021★ · 2020-07-06
- Zinkuth/F5-BIG-IP-CVE-2020-59021★ · 2020-07-06
- ajdumanhug/CVE-2020-59020★ · 2020-07-09
- amitlttwo/CVE-2020-59021★ · 2023-02-07
- ar0dd/CVE-2020-590212★ · 2020-07-05
- corelight/CVE-2020-5902-F5BigIP4★ · 2020-11-12
- d4rk007/F5-Big-IP-CVE-2020-5902-mass-exploiter4★ · 2020-07-11
- deepsecurity-pe/GoF5-CVE-2020-59022★ · 2020-07-09
- dnerzker/CVE-2020-59020★ · 2020-07-16
- dunderhay/CVE-2020-590236★ · 2024-03-19
- dwisiswant0/CVE-2020-59029★ · 2020-07-04
- flyopenair/CVE-2020-59020★ · 2020-07-10
- haisenberg/CVE-2020-59021★ · 2021-04-13
- inho28/CVE-2020-5902-F5-BIGIP0★ · 2020-07-07
- jas502n/CVE-2020-5902374★ · 2021-10-13
- jiansiting/CVE-2020-59024★ · 2020-07-07
- jinnywc/CVE-2020-59021★ · 2020-07-06
- k3nundrum/CVE-2020-59020★ · 2020-07-08
- lijiaxing1997/CVE-2020-5902-POC-EXP10★ · 2020-07-09
- ltvthang/CVE-2020-59030★ · 2020-07-08
- ludy-dev/BIG-IP-F5-TMUI-RCE-Vulnerability0★ · 2020-11-07
- momika233/cve-2020-59020★ · 2020-07-12
- murataydemir/CVE-2020-59022★ · 2020-08-30
- nsflabs/CVE-2020-59028★ · 2020-07-05
- qiong-qi/CVE-2020-5902-POC2★ · 2020-07-10
- qlkwej/poc-CVE-2020-59021★ · 2020-07-06
- r0ttenbeef/cve-2020-59022★ · 2020-07-06
- renanhsilva/checkvulnCVE202059021★ · 2020-07-08
- rockmelodies/CVE-2020-5902-rce-gui8★ · 2020-07-17
- rwincey/CVE-2020-5902-NSE8★ · 2020-07-06
- sujaygr8/Big-IP-exploit0★ · 2021-06-10
- superzerosec/cve-2020-59020★ · 2020-08-18
- sv3nbeast/CVE-2020-5902_RCE8★ · 2020-07-06
- theLSA/f5-bigip-rce-cve-2020-590262★ · 2020-07-12
- west9b/F5-BIG-IP-POC10★ · 2022-07-30
- yasserjanah/CVE-2020-590243★ · 2023-05-22
- yassineaboukir/CVE-2020-590270★ · 2020-07-06
- z3n70/CVE-2020-59022★ · 2022-07-07
- zhzyker/CVE-2020-590213★ · 2020-07-08
- 0xBlackash/CVE-2020-5902
Nuclei templates (1)
Metasploit modules (1)
ExploitDB entries (3)
- https://www.exploit-db.com/exploits/48711
- https://www.exploit-db.com/exploits/48643
- https://www.exploit-db.com/exploits/48642
Exploit collections (3)
- chaitin/xray/blob/master/pocs/f5-tmui-cve-2020-5902-rce.yml
- helloexp/0day/tree/master/99-%E5%AE%89%E5%85%A8%E4%BA%A7%E5%93%81%E6%BC%8F%E6%B4%9E/F5/TM…
- zan8in/afrog/blob/main/pocs/afrog-pocs/CVE/2020/CVE-2020-5902.yaml