PT-2016-2780 · Juniper Networks · Junos

Published

2016-09-09

·

Updated

2017-09-01

·

CVE-2016-1279

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Junos OS versions prior to 12.1X46-D45 Junos OS versions prior to 12.1X46-D50 Junos OS versions prior to 12.1X47-D35 Junos OS versions prior to 12.3R12 Junos OS versions prior to 12.3X48-D25 Junos OS versions prior to 13.3R10 Junos OS versions prior to 13.3R9-S1 Junos OS versions prior to 14.1R7 Junos OS versions prior to 14.1X53-D35 Junos OS versions prior to 14.2R6 Junos OS versions prior to 15.1A2 Junos OS versions prior to 15.1F4 Junos OS versions prior to 15.1X49-D30 Junos OS versions prior to 15.1R3
Description The issue allows remote attackers to obtain sensitive information and consequently gain administrative privileges via unspecified vectors. This could potentially lead to unauthorized access and control of the system.
Recommendations For Junos OS versions prior to 12.1X46-D45, update to version 12.1X46-D45 or later. For Junos OS versions prior to 12.1X46-D50, update to version 12.1X46-D50 or later. For Junos OS versions prior to 12.1X47-D35, update to version 12.1X47-D35 or later. For Junos OS versions prior to 12.3R12, update to version 12.3R12 or later. For Junos OS versions prior to 12.3X48-D25, update to version 12.3X48-D25 or later. For Junos OS versions prior to 13.3R10, update to version 13.3R10 or later. For Junos OS versions prior to 13.3R9-S1, update to version 13.3R9-S1 or later. For Junos OS versions prior to 14.1R7, update to version 14.1R7 or later. For Junos OS versions prior to 14.1X53-D35, update to version 14.1X53-D35 or later. For Junos OS versions prior to 14.2R6, update to version 14.2R6 or later. For Junos OS versions prior to 15.1A2, update to version 15.1A2 or later. For Junos OS versions prior to 15.1F4, update to version 15.1F4 or later. For Junos OS versions prior to 15.1X49-D30, update to version 15.1X49-D30 or later. For Junos OS versions prior to 15.1R3, update to version 15.1R3 or later.

Fix

Improper Authentication

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2016-02183
CVE-2016-1279

Affected Products

Junos