### [CVE-2021-22995](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-22995) ![](https://img.shields.io/static/v1?label=Product&message=BIG-IQ&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=All%207.x%20and%206.x%20versions%20&color=brightgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=DoS&color=brightgreen) ### Description On all 7.x and 6.x versions (fixed in 8.0.0), BIG-IQ high availability (HA) when using a Quorum device for automatic failover does not implement any form of authentication with the Corosync daemon. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated. ### POC #### Reference No PoCs from references. #### Github - https://github.com/DNTYO/F5_Vulnerability