ZeroHour

CVE-2018-0040

CVSS 3.0
9.8 critical
EPSS
1%p71
Published
()
Modified
Description

Juniper Networks Contrail Service Orchestrator versions prior to 4.0.0 use hardcoded cryptographic certificates and keys in some cases, which may allow network based attackers to gain unauthorized access to services.

Vendors
juniper
Products
contrail service orchestration
Weakness
CWE-321, CWE-798
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.