An Incorrect Default Permissions vulnerability in the command line interface (CLI) of Juniper Networks Junos OS Evolved allows a low privileged local attacker to view NETCONF traceoptions files, representing an exposure of sensitive information.
On all Junos OS Evolved platforms, when NETCONF traceoptions are configured, NETCONF traceoptions files get created with an incorrect group permission, which allows
a low-privileged user can access sensitive information compromising the confidentiality of the system.
Junos OS Evolved:
During installation, installed file permissions are set to allow anyone to modify those files.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Junos_os_evolved | Juniper | * | 20.4 (excluding) |
| Junos_os_evolved | Juniper | 20.4 (including) | 20.4 (including) |
| Junos_os_evolved | Juniper | 20.4-r1 (including) | 20.4-r1 (including) |
| Junos_os_evolved | Juniper | 20.4-r1-s1 (including) | 20.4-r1-s1 (including) |
| Junos_os_evolved | Juniper | 20.4-r1-s2 (including) | 20.4-r1-s2 (including) |
| Junos_os_evolved | Juniper | 20.4-r2 (including) | 20.4-r2 (including) |
| Junos_os_evolved | Juniper | 20.4-r2-s1 (including) | 20.4-r2-s1 (including) |
| Junos_os_evolved | Juniper | 20.4-r2-s2 (including) | 20.4-r2-s2 (including) |
| Junos_os_evolved | Juniper | 20.4-r2-s3 (including) | 20.4-r2-s3 (including) |
| Junos_os_evolved | Juniper | 20.4-r3 (including) | 20.4-r3 (including) |
| Junos_os_evolved | Juniper | 20.4-r3-s1 (including) | 20.4-r3-s1 (including) |
| Junos_os_evolved | Juniper | 20.4-r3-s2 (including) | 20.4-r3-s2 (including) |
| Junos_os_evolved | Juniper | 20.4-r3-s3 (including) | 20.4-r3-s3 (including) |
| Junos_os_evolved | Juniper | 20.4-r3-s4 (including) | 20.4-r3-s4 (including) |
| Junos_os_evolved | Juniper | 20.4-r3-s5 (including) | 20.4-r3-s5 (including) |
| Junos_os_evolved | Juniper | 20.4-r3-s6 (including) | 20.4-r3-s6 (including) |
| Junos_os_evolved | Juniper | 20.4-r3-s7 (including) | 20.4-r3-s7 (including) |
| Junos_os_evolved | Juniper | 20.4-r3-s8 (including) | 20.4-r3-s8 (including) |
| Junos_os_evolved | Juniper | 21.2 (including) | 21.2 (including) |
| Junos_os_evolved | Juniper | 21.2-r1 (including) | 21.2-r1 (including) |
| Junos_os_evolved | Juniper | 21.2-r1-s1 (including) | 21.2-r1-s1 (including) |
| Junos_os_evolved | Juniper | 21.2-r1-s2 (including) | 21.2-r1-s2 (including) |
| Junos_os_evolved | Juniper | 21.2-r2 (including) | 21.2-r2 (including) |
| Junos_os_evolved | Juniper | 21.2-r2-s1 (including) | 21.2-r2-s1 (including) |
| Junos_os_evolved | Juniper | 21.2-r2-s2 (including) | 21.2-r2-s2 (including) |
| Junos_os_evolved | Juniper | 21.2-r3 (including) | 21.2-r3 (including) |
| Junos_os_evolved | Juniper | 21.2-r3-s1 (including) | 21.2-r3-s1 (including) |
| Junos_os_evolved | Juniper | 21.2-r3-s2 (including) | 21.2-r3-s2 (including) |
| Junos_os_evolved | Juniper | 21.2-r3-s3 (including) | 21.2-r3-s3 (including) |
| Junos_os_evolved | Juniper | 21.2-r3-s4 (including) | 21.2-r3-s4 (including) |
| Junos_os_evolved | Juniper | 21.2-r3-s5 (including) | 21.2-r3-s5 (including) |
| Junos_os_evolved | Juniper | 21.2-r3-s6 (including) | 21.2-r3-s6 (including) |
| Junos_os_evolved | Juniper | 21.4 (including) | 21.4 (including) |
| Junos_os_evolved | Juniper | 21.4-r1 (including) | 21.4-r1 (including) |
| Junos_os_evolved | Juniper | 21.4-r1-s1 (including) | 21.4-r1-s1 (including) |
| Junos_os_evolved | Juniper | 21.4-r1-s2 (including) | 21.4-r1-s2 (including) |
| Junos_os_evolved | Juniper | 21.4-r2 (including) | 21.4-r2 (including) |
| Junos_os_evolved | Juniper | 21.4-r2-s1 (including) | 21.4-r2-s1 (including) |
| Junos_os_evolved | Juniper | 21.4-r2-s2 (including) | 21.4-r2-s2 (including) |
| Junos_os_evolved | Juniper | 21.4-r3 (including) | 21.4-r3 (including) |
| Junos_os_evolved | Juniper | 21.4-r3-s1 (including) | 21.4-r3-s1 (including) |
| Junos_os_evolved | Juniper | 21.4-r3-s2 (including) | 21.4-r3-s2 (including) |
| Junos_os_evolved | Juniper | 21.4-r3-s3 (including) | 21.4-r3-s3 (including) |
| Junos_os_evolved | Juniper | 21.4-r3-s4 (including) | 21.4-r3-s4 (including) |
| Junos_os_evolved | Juniper | 22.1 (including) | 22.1 (including) |
| Junos_os_evolved | Juniper | 22.1-r1 (including) | 22.1-r1 (including) |
| Junos_os_evolved | Juniper | 22.1-r1-s1 (including) | 22.1-r1-s1 (including) |
| Junos_os_evolved | Juniper | 22.1-r1-s2 (including) | 22.1-r1-s2 (including) |
| Junos_os_evolved | Juniper | 22.1-r2 (including) | 22.1-r2 (including) |
| Junos_os_evolved | Juniper | 22.1-r2-s1 (including) | 22.1-r2-s1 (including) |
| Junos_os_evolved | Juniper | 22.1-r3 (including) | 22.1-r3 (including) |
| Junos_os_evolved | Juniper | 22.1-r3-s1 (including) | 22.1-r3-s1 (including) |
| Junos_os_evolved | Juniper | 22.1-r3-s2 (including) | 22.1-r3-s2 (including) |
| Junos_os_evolved | Juniper | 22.1-r3-s3 (including) | 22.1-r3-s3 (including) |
| Junos_os_evolved | Juniper | 22.1-r3-s4 (including) | 22.1-r3-s4 (including) |
| Junos_os_evolved | Juniper | 22.2 (including) | 22.2 (including) |
| Junos_os_evolved | Juniper | 22.2-r1 (including) | 22.2-r1 (including) |
| Junos_os_evolved | Juniper | 22.2-r1-s1 (including) | 22.2-r1-s1 (including) |
| Junos_os_evolved | Juniper | 22.2-r1-s2 (including) | 22.2-r1-s2 (including) |
| Junos_os_evolved | Juniper | 22.2-r2 (including) | 22.2-r2 (including) |
| Junos_os_evolved | Juniper | 22.2-r2-s1 (including) | 22.2-r2-s1 (including) |
| Junos_os_evolved | Juniper | 22.2-r2-s2 (including) | 22.2-r2-s2 (including) |
| Junos_os_evolved | Juniper | 22.2-r3 (including) | 22.2-r3 (including) |
| Junos_os_evolved | Juniper | 22.2-r3-s1 (including) | 22.2-r3-s1 (including) |
| Junos_os_evolved | Juniper | 22.2-r3-s2 (including) | 22.2-r3-s2 (including) |
| Junos_os_evolved | Juniper | 22.3 (including) | 22.3 (including) |
| Junos_os_evolved | Juniper | 22.3-r1 (including) | 22.3-r1 (including) |
| Junos_os_evolved | Juniper | 22.3-r1-s1 (including) | 22.3-r1-s1 (including) |
| Junos_os_evolved | Juniper | 22.3-r1-s2 (including) | 22.3-r1-s2 (including) |
| Junos_os_evolved | Juniper | 22.3-r2 (including) | 22.3-r2 (including) |
| Junos_os_evolved | Juniper | 22.3-r2-s1 (including) | 22.3-r2-s1 (including) |
| Junos_os_evolved | Juniper | 22.3-r2-s2 (including) | 22.3-r2-s2 (including) |
| Junos_os_evolved | Juniper | 22.3-r3-s2 (including) | 22.3-r3-s2 (including) |
| Junos_os_evolved | Juniper | 22.4 (including) | 22.4 (including) |
| Junos_os_evolved | Juniper | 22.4-r1 (including) | 22.4-r1 (including) |
| Junos_os_evolved | Juniper | 22.4-r1-s1 (including) | 22.4-r1-s1 (including) |
| Junos_os_evolved | Juniper | 22.4-r1-s2 (including) | 22.4-r1-s2 (including) |
| Junos_os_evolved | Juniper | 22.4-r2 (including) | 22.4-r2 (including) |
| Junos_os_evolved | Juniper | 22.4-r2-s1 (including) | 22.4-r2-s1 (including) |
| Junos_os_evolved | Juniper | 22.4-r2-s2 (including) | 22.4-r2-s2 (including) |
| Junos_os_evolved | Juniper | 23.2 (including) | 23.2 (including) |
| Junos_os_evolved | Juniper | 23.2-r1 (including) | 23.2-r1 (including) |
| Junos_os_evolved | Juniper | 23.2-r1-s1 (including) | 23.2-r1-s1 (including) |
| Junos_os_evolved | Juniper | 23.2-r2 (including) | 23.2-r2 (including) |