Unrated severityNVD Advisory· Published Apr 22, 2021· Updated Sep 16, 2024
Contrail Insights: The REST API implementation allows an unauthenticated remote attacker to execute commands as root.
CVE-2021-0265
Description
An unvalidated REST API in the AppFormix Agent of Juniper Networks AppFormix allows an unauthenticated remote attacker to execute commands as root on the host running the AppFormix Agent, when certain preconditions are performed by the attacker, thus granting the attacker full control over the environment. This issue affects: Juniper Networks AppFormix 3 versions prior to 3.1.22, 3.2.14, 3.3.0.
Affected products
2- Range: <3.1.22, <3.2.14, <3.3.0
- Juniper Networks/Contrail Insightsv5Range: 3
Patches
Vulnerability mechanics
References
1- kb.juniper.net/JSA11156mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.