On Juniper ATP, secret passphrase CLI inputs, such as "set mcm", are logged to /var/log/syslog in clear text, allowing authenticated local user to be able to view these secret information. This issue affects Juniper ATP 5.0 versions before 5.0.4.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
juniper advanced threat prevention |