CVE-2023-36845: Junos OS: EX and SRX Series: A PHP vulnerability in J-Web allows an unauthenticated to control an important environment variable
A PHP External Variable Modification vulnerability in J-Web of Juniper Networks Junos OS on EX Series
and SRX Series
allows an unauthenticated, network-based attacker to remotely execute code.
Using a crafted request which sets the variable PHPRC an attacker is able to modify the PHP execution environment allowing the injection und execution of code.
This issue affects Juniper Networks Junos OS on EX Series
and
SRX Series:
All versions prior to
20.4R3-S9; 21.1 versions 21.1R1 and later; 21.2 versions prior to 21.2R3-S7; 21.3 versions prior to 21.3R3-S5; 21.4 versions prior to 21.4R3-S5; 22.1 versions
prior to
22.1R3-S4; 22.2 versions
prior to
22.2R3-S2; 22.3 versions
prior to
22.3R2-S2, 22.3R3-S1; 22.4 versions
prior to
22.4R2-S1, 22.4R3; 23.2 versions prior to 23.2R1-S1, 23.2R2.
Other sources
Juniper Junos OS on EX Series and SRX Series contains a PHP external variable modification vulnerability that allows an unauthenticated, network-based attacker to control an important environment variable. Using a crafted request, which sets the variable PHPRC, an attacker is able to modify the PHP execution environment allowing the injection und execution of code.
— CISA
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2023-36845?
CVE-2023-36845 has been assigned a high severity rating, indicating significant risk for affected systems.
How do I fix CVE-2023-36845?
To fix CVE-2023-36845, you should update the Junos OS to the latest patched version as specified by Juniper Networks.
What is the impact of CVE-2023-36845?
CVE-2023-36845 allows an unauthenticated attacker to execute remote code on affected Juniper devices.
Which products are affected by CVE-2023-36845?
CVE-2023-36845 affects Junos OS on specific models of EX Series switches and SRX Series firewalls.
Can I exploit CVE-2023-36845 remotely?
Yes, CVE-2023-36845 can be exploited remotely through crafted network requests.