jsdm/ajax/port.php in J-Web in Juniper Junos before 10.4R13, 11.4 before 11.4R7, 12.1 before 12.1R5, 12.2 before 12.2R3, and 12.3 before 12.3R1 allows remote authenticated users to execute arbitrary commands via the rsargs parameter in an exec action.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2013-11-05 12:55
Updated : 2017-08-28 18:33
NVD link : CVE-2013-6618
Mitre link : CVE-2013-6618
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
juniper
- junos