CVE-2018-0010

A vulnerability in the Juniper Networks Junos Space Security Director allows a user who does not have SSH access to a device to reuse the URL that was created for another user to perform SSH access. Affected releases are all versions of Junos Space Security Director prior to 17.2R1.
References
Link Resource
https://kb.juniper.net/JSA10840 Patch Vendor Advisory
https://kb.juniper.net/JSA10840 Patch Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:juniper:junos_space:13.3:r1:*:*:*:*:*:*
cpe:2.3:o:juniper:junos_space:13.3:r2:*:*:*:*:*:*
cpe:2.3:o:juniper:junos_space:14.1:r1:*:*:*:*:*:*
cpe:2.3:o:juniper:junos_space:14.1:r2:*:*:*:*:*:*
cpe:2.3:o:juniper:junos_space:14.1:r3:*:*:*:*:*:*
cpe:2.3:o:juniper:junos_space:15.1:r1:*:*:*:*:*:*
cpe:2.3:o:juniper:junos_space:15.1:r2:*:*:*:*:*:*
cpe:2.3:o:juniper:junos_space:15.1:r3:*:*:*:*:*:*
cpe:2.3:o:juniper:junos_space:15.1:r4:*:*:*:*:*:*
cpe:2.3:o:juniper:junos_space:15.2:r1:*:*:*:*:*:*
cpe:2.3:o:juniper:junos_space:15.2:r2:*:*:*:*:*:*
cpe:2.3:o:juniper:junos_space:16.1:r1:*:*:*:*:*:*
cpe:2.3:o:juniper:junos_space:16.1:r2:*:*:*:*:*:*
cpe:2.3:o:juniper:junos_space:16.1:r3:*:*:*:*:*:*
cpe:2.3:o:juniper:junos_space:17.1:r1:*:*:*:*:*:*
cpe:2.3:o:juniper:junos_space:17.2:r1:*:*:*:*:*:*

History

21 Nov 2024, 03:37

Type Values Removed Values Added
References () https://kb.juniper.net/JSA10840 - Patch, Vendor Advisory () https://kb.juniper.net/JSA10840 - Patch, Vendor Advisory

Information

Published : 2018-01-10 22:29

Updated : 2024-11-21 03:37


NVD link : CVE-2018-0010

Mitre link : CVE-2018-0010

CVE.ORG link : CVE-2018-0010


JSON object : View

Products Affected

juniper

  • junos_space
CWE
CWE-269

Improper Privilege Management