CVE-2018-0040
—CVSS 3.0
9.8 critical
EPSS
1%p71
Published
()
Modified
Description
Juniper Networks Contrail Service Orchestrator versions prior to 4.0.0 use hardcoded cryptographic certificates and keys in some cases, which may allow network based attackers to gain unauthorized access to services.
- Vendors
- juniper
- Products
- contrail service orchestration
- Weakness
- CWE-321, CWE-798
- Vector
- CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.