ZeroHour

CVE-2019-0042

CVSS 3.1
4.2 medium
EPSS
<1%p21
Published
()
Modified
Description

Juniper Identity Management Service (JIMS) for Windows versions prior to 1.1.4 may send an incorrect message to associated SRX services gateways. This may allow an attacker with physical access to an existing domain connected Windows system to bypass SRX firewall policies, or trigger a Denial of Service (DoS) condition for the network.

Vendors
juniper
Products
identity management service
Weakness
CWE-305, CWE-404, CWE-669
Vector
CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.