High severity7.8NVD Advisory· Published Apr 10, 2019· Updated Jun 17, 2026
CVE-2019-0032
CVE-2019-0032
Description
A password management issue exists where the Organization authentication username and password were stored in plaintext in log files. A locally authenticated attacker who is able to access these stored plaintext credentials can use them to login to the Organization. Affected products are: Juniper Networks Service Insight versions from 15.1R1, prior to 18.1R1. Service Now versions from 15.1R1, prior to 18.1R1.
Affected products
6cpe:2.3:a:juniper:service_insight:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:juniper:service_insight:*:*:*:*:*:*:*:*range: >=15.1r1,<18.1r1
- (no CPE)range: 15.1R1 - 18.1R1
- (no CPE)range: 15.1R1
cpe:2.3:a:juniper:service_now:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:juniper:service_now:*:*:*:*:*:*:*:*range: >=15.1r1,<18.1r1
- (no CPE)range: 15.1R1
- Range: 15.1R1 - 18.1R1
Patches
Vulnerability mechanics
References
3- www.securityfocus.com/bid/107885nvdThird Party AdvisoryVDB Entry
- kb.juniper.net/JSA10921nvdVendor Advisory
- kb.juniper.net/KB27572nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.