This issue is not applicable to NFX NextGen Software. On NFX Series devices the use of Hard-coded Credentials in Juniper Networks Junos OS allows an attacker to take over any instance of an NFX deployment. This issue is only exploitable through administrative interfaces. This issue affects: Juniper Networks Junos OS versions prior to 19.1R1 on NFX Series. No other platforms besides NFX Series devices are affected.
2021-04-22T20:15:09.257
2024-11-21T05:42:18.653
Modified
CVSSv3.1: 10.0 (CRITICAL)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | juniper | junos | < 19.1 | Yes |
Operating System | juniper | junos | 19.1 | Yes |
Hardware | juniper | nfx150 | - | No |
Hardware | juniper | nfx250 | - | No |
Hardware | juniper | nfx350 | - | No |