Juniper ATP ships with hard coded credentials in the Web Collector instance which gives an attacker the ability to take full control of any installation of the software. Affected releases are Juniper Networks Juniper ATP: 5.0 versions prior to 5.0.3.

Published at
2019-01-15
1097 days ago
Modified
2019-01-15
1097 days ago
2019
Year
The year of the turtle

https://kb.juniper.net/JSA10918

CONFIRM:https://kb.juniper.net/JSA10918

Vulnerability RAW

{
	"Title": {
		"_text": "CVE-2019-0020"
	},
	"Notes": {
		"Note": [
			{
				"_text": "Juniper ATP ships with hard coded credentials in the Web Collector instance which gives an attacker the ability to take full control of any installation of the software. Affected releases are Juniper Networks Juniper ATP: 5.0 versions prior to 5.0.3."
			},
			{
				"_text": "2019-01-15"
			},
			{
				"_text": "2019-01-15"
			}
		]
	},
	"CVE": {
		"_text": "CVE-2019-0020"
	},
	"References": {
		"Reference": {
			"URL": {
				"_text": "https://kb.juniper.net/JSA10918"
			},
			"Description": {
				"_text": "CONFIRM:https://kb.juniper.net/JSA10918"
			}
		}
	}
}