CVE-2013-5096

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
16/08/2013
Last modified:
11/04/2025

Description

Juniper Junos Space before 13.1R1.6, as used on the JA1500 appliance and in other contexts, does not properly implement role-based access control, which allows remote authenticated users to modify the configuration by leveraging the read-only privilege, aka PR 863804.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:juniper:junos_space:11.1:*:*:*:*:*:*:*
cpe:2.3:a:juniper:junos_space:11.2:*:*:*:*:*:*:*
cpe:2.3:a:juniper:junos_space:11.3:*:*:*:*:*:*:*
cpe:2.3:a:juniper:junos_space:11.4:*:*:*:*:*:*:*
cpe:2.3:a:juniper:junos_space:12.1:*:*:*:*:*:*:*
cpe:2.3:a:juniper:junos_space:12.2:*:*:*:*:*:*:*
cpe:2.3:a:juniper:junos_space:12.3:*:*:*:*:*:*:*
cpe:2.3:a:juniper:junos_space_virtual_appliance:-:*:*:*:*:*:*:*
cpe:2.3:h:juniper:junos_space_ja1500_appliance:-:*:*:*:*:*:*:*