Medium severity5.5NVD Advisory· Published Jan 15, 2019· Updated Jun 17, 2026
CVE-2019-0004
CVE-2019-0004
Description
On Juniper ATP, the API key and the device key are logged in a file readable by authenticated local users. These keys are used for performing critical operations on the WebUI interface. This issue affects Juniper ATP 5.0 versions prior to 5.0.3.
Affected products
3<5.0.3+ 1 more
- (no CPE)range: <5.0.3
- (no CPE)range: 5.0
- cpe:2.3:o:juniper:advanced_threat_prevention:*:*:*:*:*:*:*:*Range: >=5.0.0,<5.0.3
Patches
Vulnerability mechanics
References
1- kb.juniper.net/JSA10918nvdVendor Advisory
News mentions
0No linked articles in our index yet.