CVE Vulnerabilities

CVE-2018-0025

Channel Accessible by Non-Endpoint

Published: Jul 11, 2018 | Modified: Nov 21, 2024
CVSS 3.x
8.1
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

When an SRX Series device is configured to use HTTP/HTTPS pass-through authentication services, a client sending authentication credentials in the initial HTTP/HTTPS session is at risk that these credentials may be captured during follow-on HTTP/HTTPS requests by a malicious actor through a man-in-the-middle attack or by authentic servers subverted by malicious actors. FTP, and Telnet pass-through authentication services are not affected. Affected releases are Juniper Networks SRX Series: 12.1X46 versions prior to 12.1X46-D67 on SRX Series; 12.3X48 versions prior to 12.3X48-D25 on SRX Series; 15.1X49 versions prior to 15.1X49-D35 on SRX Series.

Weakness

The product does not adequately verify the identity of actors at both ends of a communication channel, or does not adequately ensure the integrity of the channel, in a way that allows the channel to be accessed or influenced by an actor that is not an endpoint.

Affected Software

NameVendorStart VersionEnd Version
JunosJuniper12.1x46 (including)12.1x46 (including)
JunosJuniper12.1x46-d10 (including)12.1x46-d10 (including)
JunosJuniper12.1x46-d15 (including)12.1x46-d15 (including)
JunosJuniper12.1x46-d20 (including)12.1x46-d20 (including)
JunosJuniper12.1x46-d25 (including)12.1x46-d25 (including)
JunosJuniper12.1x46-d30 (including)12.1x46-d30 (including)
JunosJuniper12.1x46-d35 (including)12.1x46-d35 (including)
JunosJuniper12.1x46-d40 (including)12.1x46-d40 (including)
JunosJuniper12.1x46-d45 (including)12.1x46-d45 (including)
JunosJuniper12.1x46-d50 (including)12.1x46-d50 (including)
JunosJuniper12.1x46-d55 (including)12.1x46-d55 (including)
JunosJuniper12.1x46-d60 (including)12.1x46-d60 (including)
JunosJuniper12.1x46-d65 (including)12.1x46-d65 (including)
JunosJuniper12.1x46-d66 (including)12.1x46-d66 (including)

Potential Mitigations

References