CVE-2018-0053

MEDIUM

Juniper Junos OS < 15.1X49-D30 on vSRX - Unauthenticated Authentication Bypass

Title source: llm
STIX 2.1

Description

An authentication bypass vulnerability in the initial boot sequence of Juniper Networks Junos OS on vSRX Series may allow an attacker to gain full control of the system without authentication when the system is initially booted up. Affected releases are Juniper Networks Junos OS: 15.1X49 versions prior to 15.1X49-D30 on vSRX.

References (2)

Core 2
Core References
Vendor Advisory x_refsource_confirm
https://kb.juniper.net/JSA10887
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1041854

Scores

CVSS v3 6.8
EPSS 0.0005
EPSS Percentile 15.6%
Attack Vector PHYSICAL
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-287
Status published
Products (1)
juniper/junos 15.1x49 (3 CPE variants)
Published Oct 10, 2018
Tracked Since Feb 18, 2026