An Incorrect Ownership Assignment vulnerability in Juniper Networks Contrail Service Orchestration (CSO) allows a locally authenticated user to have their permissions elevated without authentication thereby taking control of the local system they are currently authenticated to. This issue affects: Juniper Networks Contrail Service Orchestration 6.0.0 versions prior to 6.0.0 Patch v3 on On-premises installations. This issue does not affect Juniper Networks Contrail Service Orchestration On-premises versions prior to 6.0.0.
2022-04-14T16:15:08.167
2024-11-21T06:46:21.270
Modified
CVSSv3.1: 7.3 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | juniper | contrail_service_orchestration | 6.0.0 | Yes |
Application | juniper | contrail_service_orchestration | 6.0.0 | Yes |
Application | juniper | contrail_service_orchestration | 6.0.0 | Yes |