ZeroHour

CVE-2019-0020

CVSS 3.0
9.8 critical
EPSS
2%p74
Published
()
Modified
Description

Juniper ATP ships with hard coded credentials in the Web Collector instance which gives an attacker the ability to take full control of any installation of the software. Affected releases are Juniper Networks Juniper ATP: 5.0 versions prior to 5.0.3.

Vendors
juniper
Products
advanced threat prevention
Weakness
CWE-798
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news