← العودة للجدول
CVE-2018-0001
CVE-2018-0001 — A remote, unauthenticated attacker may be able to execute code by exploiting a u
📅 2018-01-10
🔴 Critical 🔥 No NVD Exploit Juniper CVSS 9.8 🎯 EPSS 4.22%

📋 الوصف الكامل

A remote, unauthenticated attacker may be able to execute code by exploiting a use-after-free defect found in older versions of PHP through injection of crafted data via specific PHP URLs within the context of the J-Web process. Affected releases are Juniper Networks Junos OS: 12.1X46 versions prior to 12.1X46-D67; 12.3 versions prior to 12.3R12-S5; 12.3X48 versions prior to 12.3X48-D35; 14.1 vers

💻 الأنظمة المتأثرة

Juniper JunOS | PHP

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2018-0001

📡 المصدر

NVD

✅ الحلول والتخفيف

Update to v12.1

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←