A local, authenticated user with shell can view sensitive configuration information via the ev.ops configuration file. This issue affects all versions of Junos OS Evolved prior to 19.2R1.
References
Link | Resource |
---|---|
https://kb.juniper.net/JSA11003 | Vendor Advisory |
Configurations
Information
Published : 2020-04-08 13:15
Updated : 2020-04-10 10:32
NVD link : CVE-2020-1623
Mitre link : CVE-2020-1623
JSON object : View
CWE
CWE-532
Insertion of Sensitive Information into Log File
Products Affected
juniper
- junos_os_evolved