ZeroHour

CVE-2019-0021

CVSS 3.0
5.5 medium
EPSS
<1%p27
Published
()
Modified
Description

On Juniper ATP, secret passphrase CLI inputs, such as "set mcm", are logged to /var/log/syslog in clear text, allowing authenticated local user to be able to view these secret information. This issue affects Juniper ATP 5.0 versions prior to 5.0.4.

Vendors
juniper
Products
advanced threat prevention
Weakness
CWE-532
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.