CVE-2008-1181: Infoleak
Juniper Networks Secure Access 2000 5.5 R1 (build 11711) allows remote attackers to obtain sensitive information via a direct request for remediate.cgi without certain parameters, which reveals the path in an "Execute failed" error message.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-1181?
CVE-2008-1181 is classified as a medium severity vulnerability due to the information disclosure risk it poses.
How do I fix CVE-2008-1181?
To mitigate CVE-2008-1181, ensure that your Juniper Secure Access 2000 is updated to the latest version that addresses this vulnerability.
What type of information can be leaked by CVE-2008-1181?
CVE-2008-1181 may allow remote attackers to obtain sensitive path information through error messages.
Which versions of Juniper Secure Access 2000 are affected by CVE-2008-1181?
CVE-2008-1181 specifically affects Juniper Secure Access 2000 version 5.5 R1 build 11711.
Can CVE-2008-1181 be exploited remotely?
Yes, CVE-2008-1181 can be exploited remotely without authentication to reveal sensitive information.