VYPR
Medium severity6.5NVD Advisory· Published Apr 22, 2021· Updated Jun 17, 2026

CVE-2021-0231

CVE-2021-0231

Description

A path traversal vulnerability in the Juniper Networks SRX and vSRX Series may allow an authenticated J-web user to read sensitive system files. This issue affects Juniper Networks Junos OS on SRX and vSRX Series: 19.3 versions prior to 19.3R2-S6, 19.3R3-S1; 19.4 versions prior to 19.4R2-S4, 19.4R3; 20.1 versions prior to 20.1R1-S4, 20.1R2; 20.2 versions prior to 20.2R1-S3, 20.2R2; This issue does not affect Juniper Networks Junos OS versions prior to 19.3R1.

Affected products

28
  • cpe:2.3:o:juniper:junos:19.3:-:*:*:*:*:*:*+ 25 more
    • cpe:2.3:o:juniper:junos:19.3:-:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:19.3:r1-s1:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:19.3:r1:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:19.3:r2-s1:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:19.3:r2-s2:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:19.3:r2-s3:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:19.3:r2-s4:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:19.3:r2-s5:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:19.3:r2:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:19.3:r3:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:19.4:r1-s1:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:19.4:r1-s2:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:19.4:r1:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:19.4:r2-s1:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:19.4:r2-s2:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:19.4:r2-s3:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:19.4:r2:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:20.1:r1-s1:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:20.1:r1-s2:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:20.1:r1-s3:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:20.1:r1:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:20.2:r1-s1:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:20.2:r1-s2:*:*:*:*:*:*
    • cpe:2.3:o:juniper:junos:20.2:r1:*:*:*:*:*:*
    • (no CPE)range: 19.3 versions prior to 19.3R2-S6, 19.3R3-S1; 19.4 versions prior to 19.4R2-S4, 19.4R3; 20.1 versions prior to 20.1R1-S4, 20.1R2; 20.2 versions prior to 20.2R1-S3, 20.2R2
    • (no CPE)range: unspecified
  • Range: 19.3 versions prior to 19.3R2-S6, 19.3R3-S1; 19.4 versions prior to 19.4R2-S4, 19.4R3; 20.1 versions prior to 20.1R1-S4, 20.1R2; 20.2 versions prior to 20.2R1-S3, 20.2R2
  • Range: 19.3 versions prior to 19.3R2-S6, 19.3R3-S1; 19.4 versions prior to 19.4R2-S4, 19.4R3; 20.1 versions prior to 20.1R1-S4, 20.1R2; 20.2 versions prior to 20.2R1-S3, 20.2R2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.