ID

VAR-201904-1496


CVE

CVE-2019-0034


TITLE

Juniper Junos CVE-2019-0034 Hardcoded Credentials Security Bypass Vulnerability

Trust: 0.3

sources: BID: 107877

DESCRIPTION

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a vulnerability. Notes: Google gRPC credentials were found which existed for specific internal product testing purposes which are not used as part of production releases of Junos OS. Hence this is not a vulnerability and this CVE ID assignment has been withdrawn. Juniper Junos is prone to a security-bypass vulnerability. An attacker can exploit this issue to bypass certain security restrictions and perform unauthorized actions. This may aid in further attacks

Trust: 1.26

sources: NVD: CVE-2019-0034 // BID: 107877 // VULHUB: VHN-140065

AFFECTED PRODUCTS

vendor:junipermodel:junos 18.3r1-s2scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 18.3r1-s1scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 18.3r1scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 18.2x75-d5scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 18.2x75-d30scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 18.2x75-d20scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 18.2x75-d10scope: - version: -

Trust: 0.3

vendor:junipermodel:junosscope:eqversion:18.2x75

Trust: 0.3

vendor:junipermodel:junos 18.2r2scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 18.2r1-s4scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 18.2r1-s3scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 18.2r1scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 18.1r3-s2scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 18.1r3-s1scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 18.1r3scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 18.1r2-s3scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 18.1r2-s2scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 18.1r2-s1scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 18.1r2scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.4r2-s2scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.4r2-s1scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.4r2scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.4r1-s5scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.4r1-s4scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.4r1-s1scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.4r1scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.3r3-s2scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.3r3-s1scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.3r3scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.2r3scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.2r1-s7scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.2r1-s5scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.2r1-s3scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.2r1-s1scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.2r1scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.1r2-s9scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.1r2-s6scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.1r2-s5scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.1r2-s4scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.1r2-s3scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.1r2-s2scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 17.1r2scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 16.1r7-s3scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 16.1r7-s2scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 16.1r7-s1scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 16.1r7scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 16.1r3-s9scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 16.1r3-s8scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 16.1r3-s6scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 16.1r3-s4scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 16.1r3-s3scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 16.1r3scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 18.3r1-s3scope:neversion: -

Trust: 0.3

vendor:junipermodel:junos 18.2x75-d40scope:neversion: -

Trust: 0.3

vendor:junipermodel:junos 18.2r2-s1scope:neversion: -

Trust: 0.3

vendor:junipermodel:junos 18.2r1-s5scope:neversion: -

Trust: 0.3

vendor:junipermodel:junos 18.1r3-s3scope:neversion: -

Trust: 0.3

vendor:junipermodel:junos 18.1r2-s4scope:neversion: -

Trust: 0.3

vendor:junipermodel:junos 17.4r2-s3scope:neversion: -

Trust: 0.3

vendor:junipermodel:junos 17.4r1-s6scope:neversion: -

Trust: 0.3

vendor:junipermodel:junos 17.3r3-s3scope:neversion: -

Trust: 0.3

vendor:junipermodel:junos 17.2r3-s1scope:neversion: -

Trust: 0.3

vendor:junipermodel:junos 17.2r1-s8scope:neversion: -

Trust: 0.3

vendor:junipermodel:junos 17.1r3scope:neversion: -

Trust: 0.3

vendor:junipermodel:junos 17.1r2-s10scope:neversion: -

Trust: 0.3

vendor:junipermodel:junos 16.1r7-s4scope:neversion: -

Trust: 0.3

vendor:junipermodel:junos 16.1r3-s10scope:neversion: -

Trust: 0.3

sources: BID: 107877

PROBLEMTYPE DATA

problemtype:CWE-798

Trust: 0.1

sources: VULHUB: VHN-140065

THREAT TYPE

network

Trust: 0.3

sources: BID: 107877

TYPE

Configuration Error

Trust: 0.3

sources: BID: 107877

EXTERNAL IDS

db:NVDid:CVE-2019-0034

Trust: 1.4

db:JUNIPERid:JSA10923

Trust: 0.4

db:BIDid:107877

Trust: 0.4

db:VULHUBid:VHN-140065

Trust: 0.1

sources: VULHUB: VHN-140065 // BID: 107877 // NVD: CVE-2019-0034

REFERENCES

url:http://www.juniper.net/

Trust: 0.3

url:http://www.juniper.net/us/en/products-services/nos/junos/

Trust: 0.3

url:https://kb.juniper.net/infocenter/index?page=content&id=jsa10923&actp=rss 2019-04

Trust: 0.3

url:http://www.securityfocus.com/bid/107877

Trust: 0.1

url:https://kb.juniper.net/jsa10923

Trust: 0.1

url:https://www.juniper.net/documentation/en_us/junos/topics/concept/junos-telemetry-interface-oveview.html

Trust: 0.1

url:https://www.juniper.net/documentation/en_us/junos/topics/task/configuration/grpc-junos-telemetry-interface-configuring.html

Trust: 0.1

url:https://www.juniper.net/documentation/en_us/junos/topics/task/installation/network-agent-installing.html

Trust: 0.1

sources: VULHUB: VHN-140065 // BID: 107877

CREDITS

The vendor reported this issue.

Trust: 0.3

sources: BID: 107877

SOURCES

db:VULHUBid:VHN-140065
db:BIDid:107877
db:NVDid:CVE-2019-0034

LAST UPDATE DATE

2024-08-14T14:51:14.537000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-140065date:2019-04-15T00:00:00
db:BIDid:107877date:2019-04-10T00:00:00
db:NVDid:CVE-2019-0034date:2023-11-07T03:01:40.110

SOURCES RELEASE DATE

db:VULHUBid:VHN-140065date:2019-04-10T00:00:00
db:BIDid:107877date:2019-04-10T00:00:00
db:NVDid:CVE-2019-0034date:2019-04-10T20:29:00.630