CVE-2019-0057: NFX Series: An attacker may be able to take control of the JDM application and subsequently the entire system.
An improper authorization weakness in Juniper Networks Junos OS allows a local authenticated attacker to bypass regular security controls to access the Junos Device Manager (JDM) application and take control of the system. This issue affects: Juniper Networks Junos OS versions prior to 18.2R1, 18.2X75-D5.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2019-0057?
CVE-2019-0057 is an improper authorization weakness in Juniper Networks Junos OS.
How does CVE-2019-0057 impact Juniper Networks Junos OS?
CVE-2019-0057 allows a local authenticated attacker to bypass regular security controls and access the Junos Device Manager (JDM) application to take control of the system.
Which versions of Juniper Networks Junos OS are affected by CVE-2019-0057?
Juniper Networks Junos OS versions prior to 18.2R1, 18.2X, 18.2x75 are affected by CVE-2019-0057.
What is the severity of CVE-2019-0057?
CVE-2019-0057 has a severity rating of 7.8 (high).
How can I fix CVE-2019-0057?
To fix CVE-2019-0057, it is recommended to update to Juniper Networks Junos OS version 18.2R1, 18.2X, or 18.2x75.