CVE-2013-6618: Input Validation
jsdm/ajax/port.php in J-Web in Juniper Junos before 10.4R13, 11.4 before 11.4R7, 12.1 before 12.1R5, 12.2 before 12.2R3, and 12.3 before 12.3R1 allows remote authenticated users to execute arbitrary commands via the rsargs parameter in an exec action.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-6618?
CVE-2013-6618 is considered a high severity vulnerability as it allows remote authenticated users to execute arbitrary commands.
How do I fix CVE-2013-6618?
To fix CVE-2013-6618, update Juniper Junos to the latest version that mitigates this vulnerability per the vendor's guidance.
Who is affected by CVE-2013-6618?
CVE-2013-6618 affects Juniper Junos versions before 10.4R13, 11.4 before 11.4R7, 12.1 before 12.1R5, 12.2 before 12.2R3, and 12.3 before 12.3R1.
What type of attack can be performed using CVE-2013-6618?
An attacker can execute arbitrary commands on a vulnerable Juniper device, potentially leading to system compromise.
Is CVE-2013-6618 exploit code available?
Yes, exploit code for CVE-2013-6618 can be found in various security databases and repositories.