jsdm/ajax/port.php in J-Web in Juniper Junos prior to 10.4R13, 11.4 prior to 11.4R7, 12.1 prior to 12.1R5, 12.2 prior to 12.2R3, and 12.3 prior to 12.3R1 allows remote authenticated users to execute arbitrary commands via the rsargs parameter in an exec action.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
juniper junos 10.3 |
||
juniper junos 10.2 |
||
juniper junos 10.1 |
||
juniper junos 12.1 |
||
juniper junos |
||
juniper junos 11.4 |
||
juniper junos 12.3 |
||
juniper junos 12.2 |
||
juniper junos 10.0 |