A path traversal vulnerability in the Juniper Networks SRX and vSRX Series may allow an authenticated J-web user to read sensitive system files. This issue affects Juniper Networks Junos OS on SRX and vSRX Series: 19.3 versions prior to 19.3R2-S6, 19.3R3-S1; 19.4 versions prior to 19.4R2-S4, 19.4R3; 20.1 versions prior to 20.1R1-S4, 20.1R2; 20.2 versions prior to 20.2R1-S3, 20.2R2; This issue does not affect Juniper Networks Junos OS versions prior to 19.3R1.

Published at
2021-04-22
269 days ago
Modified
2021-04-22
269 days ago
2021
Year
The year of the turtle

https://kb.juniper.net/JSA11126

MISC:https://kb.juniper.net/JSA11126

Vulnerability RAW

{
	"Title": {
		"_text": "CVE-2021-0231"
	},
	"Notes": {
		"Note": [
			{
				"_text": "A path traversal vulnerability in the Juniper Networks SRX and vSRX Series may allow an authenticated J-web user to read sensitive system files. This issue affects Juniper Networks Junos OS on SRX and vSRX Series: 19.3 versions prior to 19.3R2-S6, 19.3R3-S1; 19.4 versions prior to 19.4R2-S4, 19.4R3; 20.1 versions prior to 20.1R1-S4, 20.1R2; 20.2 versions prior to 20.2R1-S3, 20.2R2; This issue does not affect Juniper Networks Junos OS versions prior to 19.3R1."
			},
			{
				"_text": "2021-04-22"
			},
			{
				"_text": "2021-04-22"
			}
		]
	},
	"CVE": {
		"_text": "CVE-2021-0231"
	},
	"References": {
		"Reference": {
			"URL": {
				"_text": "https://kb.juniper.net/JSA11126"
			},
			"Description": {
				"_text": "MISC:https://kb.juniper.net/JSA11126"
			}
		}
	}
}