Juniper Identity Management Service (JIMS) for Windows versions prior to 1.1.4 may send an incorrect message to associated SRX services gateways. This may allow an attacker with physical access to an existing domain connected Windows system to bypass SRX firewall policies, or trigger a Denial of Service (DoS) condition for the network.
References
Link | Resource |
---|---|
https://kb.juniper.net/JSA10934 | Mitigation Vendor Advisory |
https://kb.juniper.net/JSA10934 | Mitigation Vendor Advisory |
Configurations
History
21 Nov 2024, 04:16
Type | Values Removed | Values Added |
---|---|---|
References | () https://kb.juniper.net/JSA10934 - Mitigation, Vendor Advisory |
Information
Published : 2019-04-10 20:29
Updated : 2024-11-21 04:16
NVD link : CVE-2019-0042
Mitre link : CVE-2019-0042
CVE.ORG link : CVE-2019-0042
JSON object : View
Products Affected
juniper
- identity_management_service
CWE
CWE-305
Authentication Bypass by Primary Weakness
CWE-404Improper Resource Shutdown or Release
CWE-669Incorrect Resource Transfer Between Spheres
NVD-CWE-noinfo