CVE-2016-1265

A remote unauthenticated network based attacker with access to Junos Space may execute arbitrary code on Junos Space or gain access to devices managed by Junos Space using cross site request forgery (CSRF), default authentication credentials, information leak and command injection attack vectors. All versions of Juniper Networks Junos Space prior to 15.1R3 are affected.
References
Link Resource
https://kb.juniper.net/JSA10727 Vendor Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:juniper:junos_space:*:*:*:*:*:*:*:*

Information

Published : 2017-10-13 10:29

Updated : 2019-10-09 16:17


NVD link : CVE-2016-1265

Mitre link : CVE-2016-1265


JSON object : View

CWE
CWE-255

Credentials Management Errors

CWE-352

Cross-Site Request Forgery (CSRF)

CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

Advertisement

dedicated server usa

Products Affected

juniper

  • junos_space