PT-2018-8594 · Juniper Networks · Junos

Published

2018-10-10

·

Updated

2019-10-09

·

CVE-2018-0062

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Junos OS versions prior to 12.1X46-D77 Junos OS versions prior to 12.3R12-S10 Junos OS versions prior to 12.3X48-D60 Junos OS versions prior to 15.1R7 Junos OS version 15.1F6 Junos OS versions prior to 15.1X49-D120 Junos OS versions prior to 15.1X53-D59 Junos OS versions prior to 15.1X53-D67 Junos OS versions prior to 15.1X53-D234 Junos OS versions prior to 15.1X53-D470 Junos OS versions prior to 15.1X53-D495 Junos OS versions prior to 16.1R6 Junos OS versions prior to 16.2R2-S6 Junos OS versions prior to 16.2R3 Junos OS versions prior to 17.1R2-S6 Junos OS versions prior to 17.1R3 Junos OS versions prior to 17.2R3 Junos OS versions prior to 17.3R2
Description: A Denial of Service issue in the J-Web service may allow a remote unauthenticated user to cause Denial of Service, preventing other users from authenticating or performing J-Web operations.
Recommendations: For Junos OS versions prior to 12.1X46-D77, update to 12.1X46-D77 or later. For Junos OS versions prior to 12.3R12-S10, update to 12.3R12-S10 or later. For Junos OS versions prior to 12.3X48-D60, update to 12.3X48-D60 or later. For Junos OS versions prior to 15.1R7, update to 15.1R7 or later. For Junos OS version 15.1F6, update to a version later than 15.1F6. For Junos OS versions prior to 15.1X49-D120, update to 15.1X49-D120 or later. For Junos OS versions prior to 15.1X53-D59, update to 15.1X53-D59 or later. For Junos OS versions prior to 15.1X53-D67, update to 15.1X53-D67 or later. For Junos OS versions prior to 15.1X53-D234, update to 15.1X53-D234 or later. For Junos OS versions prior to 15.1X53-D470, update to 15.1X53-D470 or later. For Junos OS versions prior to 15.1X53-D495, update to 15.1X53-D495 or later. For Junos OS versions prior to 16.1R6, update to 16.1R6 or later. For Junos OS versions prior to 16.2R2-S6, update to 16.2R2-S6 or later. For Junos OS versions prior to 16.2R3, update to 16.2R3 or later. For Junos OS versions prior to 17.1R2-S6, update to 17.1R2-S6 or later. For Junos OS versions prior to 17.1R3, update to 17.1R3 or later. For Junos OS versions prior to 17.2R3, update to 17.2R3 or later. For Junos OS versions prior to 17.3R2, update to 17.3R2 or later.

Fix

DoS

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-0062

Affected Products

Junos