Security Advisory

CVE-2019-0004

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-01-15 21:00:00
Last updated 2024-09-16 16:17:26
Assigner juniper
CVSS score 7.8
State PUBLISHED

Description

On Juniper ATP, the API key and the device key are logged in a file readable by authenticated local users. These keys are used for performing critical operations on the WebUI interface. This issue affects Juniper ATP 5.0 versions prior to 5.0.3.