CVE-2014-3812

The Juniper Junos Pulse Secure Access Service (SSL VPN) devices with IVE OS before 7.4r5 and 8.x before 8.0r1 and Junos Pulse Access Control Service (UAC) before 4.4r5 and 5.x before 5.0r1 enable cipher suites with weak encryption algorithms, which make it easier for remote attackers to obtain sensitive information by sniffing the network.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:juniper:ive_os:7.4:*:*:*:*:*:*:*
cpe:2.3:o:juniper:ive_os:8.0:*:*:*:*:*:*:*
cpe:2.3:o:juniper:unified_access_control_software:4.4:*:*:*:*:*:*:*
cpe:2.3:o:juniper:unified_access_control_software:5.0:*:*:*:*:*:*:*
OR cpe:2.3:h:juniper:fips_infranet_controller_6500:-:*:*:*:*:*:*:*
cpe:2.3:h:juniper:fips_secure_access_4000:-:*:*:*:*:*:*:*
cpe:2.3:h:juniper:fips_secure_access_4500:-:*:*:*:*:*:*:*
cpe:2.3:h:juniper:fips_secure_access_6000:-:*:*:*:*:*:*:*
cpe:2.3:h:juniper:fips_secure_access_6500:-:*:*:*:*:*:*:*
cpe:2.3:h:juniper:infranet_controller_4000:-:*:*:*:*:*:*:*
cpe:2.3:h:juniper:infranet_controller_4500:-:*:*:*:*:*:*:*
cpe:2.3:h:juniper:infranet_controller_6000:-:*:*:*:*:*:*:*
cpe:2.3:h:juniper:infranet_controller_6500:-:*:*:*:*:*:*:*
cpe:2.3:h:juniper:mag2600_gateway:-:*:*:*:*:*:*:*
cpe:2.3:h:juniper:mag4610_gateway:-:*:*:*:*:*:*:*
cpe:2.3:h:juniper:mag6610_gateway:-:*:*:*:*:*:*:*
cpe:2.3:h:juniper:mag6611_gateway:-:*:*:*:*:*:*:*
cpe:2.3:h:juniper:secure_access_2500:-:*:*:*:*:*:*:*
cpe:2.3:h:juniper:secure_access_4500:-:*:*:*:*:*:*:*
cpe:2.3:h:juniper:secure_access_700:-:*:*:*:*:*:*:*

History

21 Nov 2024, 02:08

Type Values Removed Values Added
References () http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10628 - Vendor Advisory () http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10628 - Vendor Advisory

Information

Published : 2014-06-13 14:55

Updated : 2024-11-21 02:08


NVD link : CVE-2014-3812

Mitre link : CVE-2014-3812

CVE.ORG link : CVE-2014-3812


JSON object : View

Products Affected

juniper

  • fips_infranet_controller_6500
  • fips_secure_access_6000
  • mag6610_gateway
  • fips_secure_access_4500
  • infranet_controller_4000
  • unified_access_control_software
  • fips_secure_access_6500
  • fips_secure_access_4000
  • ive_os
  • mag2600_gateway
  • secure_access_4500
  • infranet_controller_6000
  • secure_access_2500
  • infranet_controller_6500
  • infranet_controller_4500
  • mag6611_gateway
  • secure_access_700
  • mag4610_gateway
CWE
CWE-310

Cryptographic Issues