CVE-2014-0618Juniper Junos vulnerability

4 documents4 sources
Severity
7.8HIGHNVD
EPSS
0.5%
top 35.75%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 11
Latest updateMay 17

Description

Juniper Junos before 10.4 before 10.4R16, 11.4 before 11.4R8, 12.1R before 12.1R7, 12.1X44 before 12.1X44-D20, and 12.1X45 before 12.1X45-D10 on SRX Series service gateways, when used as a UAC enforcer and captive portal is enabled, allows remote attackers to cause a denial of service (flowd crash) via a crafted HTTP message.

CVSS vector

AV:N/AC:L/C:N/I:N/A:CExploitability: 10.0 | Impact: 6.9

Affected Packages3 packages

NVDjuniper/junos5 versions+4

🔴Vulnerability Details

1
GHSA
GHSA-wh82-gm9c-4g9w: Juniper Junos before 102022-05-17

💥Exploits & PoCs

1
Exploit-DB
Microsoft SQL Server Reporting Services 2016 - Remote Code Execution2020-09-17

📋Vendor Advisories

1
Juniper
CVE-2014-0618: Juniper Junos before 10.4 before 10.4R16, 11.4 before 11.4R8, 12.1R before 12.1R7, 12.1X44 before 12.1X44-D20, and 12.1X45 before 12.1X45-D10 on SRX S2014-01-11