Free and open-source vulnerability scanner
Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.
Install NowAvailable for macOS, Windows, and Linux

CVE-2018-0024
CVE information
Published
Last Modified
CVSSv2.0 Severity
CVSSv3.1 Severity
Impact Analysis
Description
An Improper Privilege Management vulnerability in a shell session of Juniper Networks Junos OS allows an authenticated unprivileged attacker to gain full control of the system. Affected releases are Juniper Networks Junos OS: 12.1X46 versions prior to 12.1X46-D45 on SRX Series; 12.3X48 versions prior to 12.3X48-D20 on SRX Series; 12.3 versions prior to 12.3R11 on EX Series; 14.1X53 versions prior to 14.1X53-D30 on EX2200/VC, EX3200, EX3300/VC, EX4200, EX4300, EX4550/VC, EX4600, EX6200, EX8200/VC (XRE), QFX3500, QFX3600, QFX5100;; 15.1X49 versions prior to 15.1X49-D20 on SRX Series..
CVSSv2.0 Score
- Severity
- High
- Base Score
- 7.2/10
- Exploit Score
- 3.9/10
- Access Vector
- Local
- Access Complexity
- Low
- Authentication Required
- None
- Impact Score
- 10/10
- Confidentiality Impact
- Complete
- Availability Impact
- Complete
- Integrity Impact
- Complete
CVSSv3.1 Score
- Severity
- High
- Base Score
- 7.8/10
- Exploit Score
- 1.8/10
- Access Vector
- Local
- Access Complexity
- Low
- Privileges Required
- Low
- Impact Score
- 5.9/10
- Confidentiality Impact
- High
- Availability Impact
- High
- Integrity Impact
- High
- Scope
- Unchanged
- User Interaction
- None
Products Affected
CPE | Affected | Vulnerable | Excluding | Edit |
---|---|---|---|---|
cpe:2.3:o:juniper:junos:12.1x46:d30:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:12.1x46:d25:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:12.1x46:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:12.1x46:d35:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:12.1x46:d20:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:12.1x46:d40:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:12.1x46:d15:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:12.1x46:d10:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:juniper:srx100:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx110:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx1400:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx1500:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx210:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx220:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx240:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx300:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx320:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx340:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx3400:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx345:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx3600:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx4100:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx4200:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx5400:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx550:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx5600:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx5800:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx650:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:juniper:junos:12.3x48:d10:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:12.3x48:d15:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:12.3x48:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:juniper:srx100:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx110:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx1400:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx1500:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx210:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx220:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx240:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx300:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx320:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx340:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx3400:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx345:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx3600:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx4100:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx4200:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx5400:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx550:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx5600:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx5800:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx650:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:juniper:junos:12.3:r2:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:12.3:r9:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:12.3:r4:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:12.3:r1:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:12.3:r7:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:12.3:r6:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:12.3:r10:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:12.3:r5:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:12.3:r3:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:12.3:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:12.3:r8:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:juniper:ex_rps:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:ex2200:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:ex2200-c:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:ex2300:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:ex2300-c:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:ex3300:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:ex3400:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:ex4200:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:ex4300:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:ex4550:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:ex4600:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:ex9200:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:juniper:junos:14.1x53:d15:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:14.1x53:d10:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:14.1x53:d25:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:14.1x53:d27:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:14.1x53:d16:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:14.1x53:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:14.1x53:d26:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:juniper:ex2200\/vc:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:ex3200:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:ex3300\/vc:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:ex4200:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:ex4300:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:ex4550\/vc:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:ex4600:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:ex6200:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:ex8200\/vc_\(xre\):-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:qfx3500:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:qfx3600:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:qfx5100:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:juniper:junos:15.1x49:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:o:juniper:junos:15.1x49:d10:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:juniper:srx100:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx110:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx1400:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx1500:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx210:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx220:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx240:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx300:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx320:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx340:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx3400:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx345:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx3600:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx4100:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx4200:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx5400:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx550:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx5600:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx5800:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:h:juniper:srx650:-:*:*:*:*:*:*:* |
No
|
- |