peter bassill · operator
$ cve CVE-2023-36846 JSON

CVE-2023-36846 KEV

5.3
MEDIUM · CVSS 3.1 · EPSS 93.5% (pctl 100)

Patch first

On CISA KEV — known exploited in the wild, due 2023-11-17.

Description

A Missing Authentication for Critical Function vulnerability in Juniper Networks Junos OS on SRX Series allows an unauthenticated, network-based attacker to cause limited impact to the file system integrity. With a specific request to user.php that doesn't require authentication an attacker is able to upload arbitrary files via J-Web, leading to a loss of integrity for a certain  part of the file system, which may allow chaining to other vulnerabilities. This issue affects Juniper Networks Junos OS on SRX Series: * All versions prior to 20.4R3-S8; * 21.1 versions 21.1R1 and later; * 21.2 versions prior to 21.2R3-S6; * 21.3 versions prior to 21.3R3-S5; * 21.4 versions prior to 21.4R3-S5; * 22.1 versions prior to 22.1R3-S3; * 22.2 versions prior to 22.2R3-S2; * 22.3 versions prior to 22.3R2-S2, 22.3R3; * 22.4 versions prior to 22.4R2-S1, 22.4R3.

Scoring

CVSS5.3 (MEDIUM, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
EPSS93.47% — more likely to be exploited than 100% of all CVEs
WeaknessCWE-306
On CISA KEVyes — remediate by 2023-11-17
Public exploitnone known
Published2023-08-17
Last modified2026-06-17

CISA KEV

NameJuniper Junos OS SRX Series Missing Authentication for Critical Function Vulnerability
Added2023-11-13
Due2023-11-17
Vendor / productJuniper / Junos OS
Ransomware usenone reported

Affected (29)

VendorProduct
juniperjunos
junipersrx100
junipersrx110
junipersrx1400
junipersrx1500
junipersrx210
junipersrx220
junipersrx240
junipersrx240h2
junipersrx240m
junipersrx300
junipersrx320
junipersrx340
junipersrx3400
junipersrx345
junipersrx3600
junipersrx380
junipersrx4000
junipersrx4100
junipersrx4200
junipersrx4600
junipersrx5000
junipersrx5400
junipersrx550
junipersrx550 hm
junipersrx550m
junipersrx5600
junipersrx5800
junipersrx650

References

→ the Explorer  ·  watch your stack  ·  NVD