CVE-2024-30406
Severity CVSS v4.0:
MEDIUM
Type:
Unavailable / Other
Publication date:
12/04/2024
Last modified:
23/01/2026
Description
A Cleartext Storage in a File on Disk vulnerability in Juniper Networks Junos OS Evolved ACX Series devices using the Paragon Active Assurance Test Agent software installed on network devices allows a local, authenticated attacker with high privileges to read all other users login credentials.<br />
<br />
This issue affects only Juniper Networks Junos OS Evolved ACX Series devices using the Paragon Active Assurance Test Agent software installed on these devices from 23.1R1-EVO through 23.2R2-EVO. <br />
<br />
This issue does not affect releases before 23.1R1-EVO.
Impact
Base Score 4.0
6.70
Severity 4.0
MEDIUM
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:juniper:paragon_active_assurance_test_agent:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:juniper:junos_os_evolved:23.1:-:*:*:*:*:*:* | ||
| cpe:2.3:o:juniper:junos_os_evolved:23.1:r1:*:*:*:*:*:* | ||
| cpe:2.3:o:juniper:junos_os_evolved:23.1:r2:*:*:*:*:*:* | ||
| cpe:2.3:o:juniper:junos_os_evolved:23.1:r3:*:*:*:*:*:* | ||
| cpe:2.3:o:juniper:junos_os_evolved:23.2:-:*:*:*:*:*:* | ||
| cpe:2.3:o:juniper:junos_os_evolved:23.2:r1:*:*:*:*:*:* | ||
| cpe:2.3:o:juniper:junos_os_evolved:23.2:r1-s1:*:*:*:*:*:* | ||
| cpe:2.3:o:juniper:junos_os_evolved:23.2:r1-s2:*:*:*:*:*:* | ||
| cpe:2.3:h:juniper:acx5448:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:juniper:acx5448-d:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:juniper:acx5448-m:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:juniper:acx7020:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:juniper:acx7024:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:juniper:acx7024x:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://supportportal.juniper.net/JSA79104
- https://www.first.org/cvss/calculator/4.0#CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:P/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N
- https://www.juniper.net/documentation/us/en/software/junos/cli-reference/topics/ref/statement/services-paa-test-agent.html
- https://www.juniper.net/documentation/us/en/software/junos/junos-install-upgrade-evo/topics/topic-map/paa-test-agent-install.html
- https://supportportal.juniper.net/JSA79104
- https://www.first.org/cvss/calculator/4.0#CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:P/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N
- https://www.juniper.net/documentation/us/en/software/junos/cli-reference/topics/ref/statement/services-paa-test-agent.html
- https://www.juniper.net/documentation/us/en/software/junos/junos-install-upgrade-evo/topics/topic-map/paa-test-agent-install.html



