Loading HuntDB...

Juniper Junos OS Path Traversal Vulnerability

Added March 25, 2022 Due April 15, 2022 CVE-2020-1631
Overdue Juniper / Junos OS CWE-22 CWE-73

Description

A path traversal vulnerability in the HTTP/HTTPS service used by J-Web, Web Authentication, Dynamic-VPN (DVPN), Firewall Authentication Pass-Through with Web-Redirect, and Zero Touch Provisioning (ZTP) allows an unauthenticated attacker to perform remote code execution.

Required Action

Apply updates per vendor instructions.

References

Additional Information

Catalog Version
2025.01.24
Catalog Released
Jan. 24, 2025
Days Until Due
0 days
Last Updated
5 months, 1 week ago