Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vgc6-c45c-9998

Опубликовано: 12 апр. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 6.7
CVSS3: 5.5

Описание

A Cleartext Storage in a File on Disk vulnerability in Juniper Networks Junos OS Evolved ACX Series devices using the Paragon Active Assurance Test Agent software installed on network devices allows a local, authenticated attacker with high privileges to read all other users login credentials.

This issue affects only Juniper Networks Junos OS Evolved ACX Series devices using the Paragon Active Assurance Test Agent software installed on these devices from 23.1R1-EVO through 23.2R2-EVO. 

This issue does not affect releases before 23.1R1-EVO.

A Cleartext Storage in a File on Disk vulnerability in Juniper Networks Junos OS Evolved ACX Series devices using the Paragon Active Assurance Test Agent software installed on network devices allows a local, authenticated attacker with high privileges to read all other users login credentials.

This issue affects only Juniper Networks Junos OS Evolved ACX Series devices using the Paragon Active Assurance Test Agent software installed on these devices from 23.1R1-EVO through 23.2R2-EVO. 

This issue does not affect releases before 23.1R1-EVO.

EPSS

Процентиль: 5%
0.00021
Низкий

6.7 Medium

CVSS4

5.5 Medium

CVSS3

Дефекты

CWE-313

Связанные уязвимости

CVSS3: 5.5
nvd
почти 2 года назад

A Cleartext Storage in a File on Disk vulnerability in Juniper Networks Junos OS Evolved ACX Series devices using the Paragon Active Assurance Test Agent software installed on network devices allows a local, authenticated attacker with high privileges to read all other users login credentials. This issue affects only Juniper Networks Junos OS Evolved ACX Series devices using the Paragon Active Assurance Test Agent software installed on these devices from 23.1R1-EVO through 23.2R2-EVO.  This issue does not affect releases before 23.1R1-EVO.

CVSS3: 5.5
fstec
почти 2 года назад

Уязвимость компонента Test Agent платформы тестирования и мониторинга физических, гибридных и виртуальных сетей Paragon Active Assurance операционных систем Juniper Networks Junos OS Evolved сетевых устройств серии ACX, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 5%
0.00021
Низкий

6.7 Medium

CVSS4

5.5 Medium

CVSS3

Дефекты

CWE-313