← Voltar para CVEs
CVE-2018-0044
N/ADescricao
An insecure SSHD configuration in Juniper Device Manager (JDM) and host OS on Juniper NFX Series devices may allow remote unauthenticated access if any of the passwords on the system are empty. The affected SSHD configuration has the PermitEmptyPasswords option set to "yes". Affected releases are Juniper Networks Junos OS: 18.1 versions prior to 18.1R4 on NFX Series.
Detalhes CVE
Pontuacao CVSS v3.1N/A
Publicado10/10/2018
Ultima modificacao11/21/2024
Fontenvd
Avistamentos honeypot0
Produtos afetados
juniper:junosjuniper:nfx150juniper:nfx250
Fraquezas (CWE)
CWE-287
Referencias
http://www.securityfocus.com/bid/105565(sirt@juniper.net)
https://kb.juniper.net/JSA10878(sirt@juniper.net)
http://www.securityfocus.com/bid/105565(af854a3a-2127-422b-91ae-364da2661108)
https://kb.juniper.net/JSA10878(af854a3a-2127-422b-91ae-364da2661108)
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.