CVE-2013-6618
Juniper Junos Authenticated RCE via J-Web PHP rsargs Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2013-6618. PoCs published by Sense of Security.
AI-analyzed exploit summary The advisory describes a remote code execution vulnerability in Juniper Junos J-Web via the `/jsdm/ajax/port.php` endpoint, allowing arbitrary PHP code execution with root privileges within a chroot. Privilege escalation can be achieved by hijacking admin sessions via `/tmp`.
Description
jsdm/ajax/port.php in J-Web in Juniper Junos before 10.4R13, 11.4 before 11.4R7, 12.1 before 12.1R5, 12.2 before 12.2R3, and 12.3 before 12.3R1 allows remote authenticated users to execute arbitrary commands via the rsargs parameter in an exec action.
Exploits (1)
The advisory describes a remote code execution vulnerability in Juniper Junos J-Web via the `/jsdm/ajax/port.php` endpoint, allowing arbitrary PHP code execution with root privileges within a chroot. Privilege escalation can be achieved by hijacking admin sessions via `/tmp`.