Back to search
CVE-2013-6618
Published: Nov 5, 2013
Modified: Aug 6, 2024
PUBLISHED
Description
jsdm/ajax/port.php in J-Web in Juniper Junos before 10.4R13, 11.4 before 11.4R7, 12.1 before 12.1R5, 12.2 before 12.2R3, and 12.3 before 12.3R1 allows remote authenticated users to execute arbitrary commands via the rsargs parameter in an exec action.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://www.senseofsecurity.com.au/advisories/SOS-13-003
x_refsource_MISC
http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10560
x_refsource_CONFIRM
29544
exploit
x_refsource_EXPLOIT-DB
54731
third-party-advisory
x_refsource_SECUNIA
62305
vdb-entry
x_refsource_BID
juniper-port-command-execution(87011)
vdb-entry
x_refsource_XF
1029016
vdb-entry
x_refsource_SECTRACK
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now