CVE-2019-0072
Severity CVSS v4.0:
Pending analysis
Type:
CWE-522
Insufficiently Protected Credentials
Publication date:
09/10/2019
Last modified:
21/10/2019
Description
An Unprotected Storage of Credentials vulnerability in the identity and access management certificate generation procedure allows a local attacker to gain access to confidential information. This issue affects: Juniper Networks SBR Carrier: 8.4.1 versions prior to 8.4.1R13; 8.5.0 versions prior to 8.5.0R4.
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Base Score 2.0
2.10
Severity 2.0
LOW
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:juniper:sbr_carrier:8.4.1:-:*:*:*:*:*:* | ||
| cpe:2.3:a:juniper:sbr_carrier:8.4.1:r1:*:*:*:*:*:* | ||
| cpe:2.3:a:juniper:sbr_carrier:8.5.0:-:*:*:*:*:*:* | ||
| cpe:2.3:a:juniper:sbr_carrier:8.5.0:r1:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



