CVE-2013-5096: Medium severity juniper networks junos space vulnerability
Juniper Junos Space before 13.1R1.6, as used on the JA1500 appliance and in other contexts, does not properly implement role-based access control, which allows remote authenticated users to modify the configuration by leveraging the read-only privilege, aka PR 863804.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-5096?
CVE-2013-5096 has a medium severity rating due to improper implementation of role-based access control.
How do I fix CVE-2013-5096?
To resolve CVE-2013-5096, upgrade to Junos Space version 13.1R1.6 or later.
Who is affected by CVE-2013-5096?
CVE-2013-5096 affects users of Juniper Networks Junos Space versions 11.1 to 12.3 and the Junos Space JA1500 appliance.
What type of vulnerability is CVE-2013-5096?
CVE-2013-5096 is an access control vulnerability allowing unauthorized configuration changes.
Can remote authenticated users exploit CVE-2013-5096?
Yes, remote authenticated users can exploit CVE-2013-5096 to modify configurations despite having read-only privileges.