5.9
CVE-2023-44187
- EPSS 0.04%
- Veröffentlicht 11.10.2023 21:15:09
- Zuletzt bearbeitet 21.11.2024 08:25:23
- Quelle sirt@juniper.net
- Teams Watchlist Login
- Unerledigt Login
An Exposure of Sensitive Information vulnerability in the 'file copy' command of Junos OS Evolved allows a local, authenticated attacker with shell access to view passwords supplied on the CLI command-line. These credentials can then be used to provide unauthorized access to the remote system. This issue affects Juniper Networks Junos OS Evolved: * All versions prior to 20.4R3-S7-EVO; * 21.1 versions 21.1R1-EVO and later; * 21.2 versions prior to 21.2R3-S5-EVO; * 21.3 versions prior to 21.3R3-S4-EVO; * 21.4 versions prior to 21.4R3-S4-EVO; * 22.1 versions prior to 22.1R3-S2-EVO; * 22.2 versions prior to 22.2R2-EVO.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Juniper ≫ Junos Os Evolved Version < 20.4
Juniper ≫ Junos Os Evolved Version20.4 Update-
Juniper ≫ Junos Os Evolved Version20.4 Updater1
Juniper ≫ Junos Os Evolved Version20.4 Updater1-s1
Juniper ≫ Junos Os Evolved Version20.4 Updater1-s2
Juniper ≫ Junos Os Evolved Version20.4 Updater2
Juniper ≫ Junos Os Evolved Version20.4 Updater2-s1
Juniper ≫ Junos Os Evolved Version20.4 Updater2-s2
Juniper ≫ Junos Os Evolved Version20.4 Updater2-s3
Juniper ≫ Junos Os Evolved Version20.4 Updater3
Juniper ≫ Junos Os Evolved Version20.4 Updater3-s1
Juniper ≫ Junos Os Evolved Version20.4 Updater3-s2
Juniper ≫ Junos Os Evolved Version20.4 Updater3-s3
Juniper ≫ Junos Os Evolved Version20.4 Updater3-s4
Juniper ≫ Junos Os Evolved Version20.4 Updater3-s5
Juniper ≫ Junos Os Evolved Version20.4 Updater3-s6
Juniper ≫ Junos Os Evolved Version21.1 Update-
Juniper ≫ Junos Os Evolved Version21.1 Updater1
Juniper ≫ Junos Os Evolved Version21.1 Updater1-s1
Juniper ≫ Junos Os Evolved Version21.1 Updater2
Juniper ≫ Junos Os Evolved Version21.1 Updater3
Juniper ≫ Junos Os Evolved Version21.1 Updater3-s1
Juniper ≫ Junos Os Evolved Version21.1 Updater3-s2
Juniper ≫ Junos Os Evolved Version21.1 Updater3-s3
Juniper ≫ Junos Os Evolved Version21.2 Update-
Juniper ≫ Junos Os Evolved Version21.2 Updater1
Juniper ≫ Junos Os Evolved Version21.2 Updater1-s1
Juniper ≫ Junos Os Evolved Version21.2 Updater1-s2
Juniper ≫ Junos Os Evolved Version21.2 Updater2
Juniper ≫ Junos Os Evolved Version21.2 Updater2-s1
Juniper ≫ Junos Os Evolved Version21.2 Updater2-s2
Juniper ≫ Junos Os Evolved Version21.2 Updater3
Juniper ≫ Junos Os Evolved Version21.2 Updater3-s1
Juniper ≫ Junos Os Evolved Version21.2 Updater3-s2
Juniper ≫ Junos Os Evolved Version21.2 Updater3-s3
Juniper ≫ Junos Os Evolved Version21.2 Updater3-s4
Juniper ≫ Junos Os Evolved Version21.3 Update-
Juniper ≫ Junos Os Evolved Version21.3 Updater1
Juniper ≫ Junos Os Evolved Version21.3 Updater1-s1
Juniper ≫ Junos Os Evolved Version21.3 Updater2
Juniper ≫ Junos Os Evolved Version21.3 Updater2-s1
Juniper ≫ Junos Os Evolved Version21.3 Updater2-s2
Juniper ≫ Junos Os Evolved Version21.3 Updater3
Juniper ≫ Junos Os Evolved Version21.3 Updater3-s1
Juniper ≫ Junos Os Evolved Version21.3 Updater3-s2
Juniper ≫ Junos Os Evolved Version21.3 Updater3-s3
Juniper ≫ Junos Os Evolved Version21.4 Update-
Juniper ≫ Junos Os Evolved Version21.4 Updater1
Juniper ≫ Junos Os Evolved Version21.4 Updater1-s1
Juniper ≫ Junos Os Evolved Version21.4 Updater1-s2
Juniper ≫ Junos Os Evolved Version21.4 Updater2
Juniper ≫ Junos Os Evolved Version21.4 Updater2-s1
Juniper ≫ Junos Os Evolved Version21.4 Updater2-s2
Juniper ≫ Junos Os Evolved Version21.4 Updater3
Juniper ≫ Junos Os Evolved Version21.4 Updater3-s1
Juniper ≫ Junos Os Evolved Version21.4 Updater3-s2
Juniper ≫ Junos Os Evolved Version21.4 Updater3-s3
Juniper ≫ Junos Os Evolved Version22.1 Updater1
Juniper ≫ Junos Os Evolved Version22.1 Updater1-s1
Juniper ≫ Junos Os Evolved Version22.1 Updater1-s2
Juniper ≫ Junos Os Evolved Version22.1 Updater2
Juniper ≫ Junos Os Evolved Version22.1 Updater2-s1
Juniper ≫ Junos Os Evolved Version22.1 Updater3
Juniper ≫ Junos Os Evolved Version22.1 Updater3-s1
Juniper ≫ Junos Os Evolved Version22.2 Updater1
Juniper ≫ Junos Os Evolved Version22.2 Updater1-s1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.04% | 0.106 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
|
sirt@juniper.net | 5.9 | 1.5 | 4 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:N/A:N
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.