A local, authenticated user with shell can obtain the hashed values of login passwords and shared secrets via the EvoSharedObjStore. This issue affects all versions of Junos OS Evolved prior to 19.1R1.
References
Link | Resource |
---|---|
https://kb.juniper.net/JSA11003 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: juniper
Published: 2020-04-08T00:00:00
Updated: 2020-04-09T23:09:15
Reserved: 2019-11-04T00:00:00
Link: CVE-2020-1622
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-04-08T20:15:13.717
Modified: 2020-04-10T17:41:24.067
Link: CVE-2020-1622
JSON object: View
Redhat Information
No data.