An Information Exposure vulnerability in Juniper Networks Contrail Networking allows a locally authenticated attacker able to read files to retrieve administrator credentials stored in plaintext thereby elevating their privileges over the system. This issue affects: Juniper Networks Contrail Networking versions prior to 1911.31.
References
Link | Resource |
---|---|
https://kb.juniper.net/JSA11102 | Vendor Advisory |
Configurations
Information
Published : 2021-01-15 10:15
Updated : 2022-04-25 10:47
NVD link : CVE-2021-0212
Mitre link : CVE-2021-0212
JSON object : View
CWE
CWE-522
Insufficiently Protected Credentials
Products Affected
juniper
- contrail_networking