ID:9269 - Exploit for Input validation error in Juniper Junos OS - CVE-2023-36844

 
Main Vulnerability Database Exploits ID:9269 - Exploit for Input validation error in Juniper Junos OS - CVE-2023-36844

ID:9269 - Exploit for Input validation error in Juniper Junos OS - CVE-2023-36844

Published: August 31, 2023


Vulnerability identifier: #VU79687
Vulnerability risk: High
CVE-ID: CVE-2023-36844
CWE-ID: CWE-20
Exploitation vector: Remote access
Vulnerable software:
Juniper Junos OS

Link to public exploit:


Vulnerability description

The vulnerability allows a remote attacker to modify application behavior.

The vulnerability exists due to insufficient validation of user-supplied input in J-Web. A remote attacker can modify values of certain PHP environments variables and modify application's behavior.

Successful exploitation of the vulnerability can lead to remote code execution.


Remediation

Install updates from vendor's website.