CVE-2015-3002 Information
Feb 14, 2021
cve
Description
Juniper Junos 12.1X44 before 12.1X44-D45 12.1X46 before 12.1X46-D30 12.1X47 before 12.1X47-D15 and 12.3X48 before 12.3X48-D10 on SRX series devices does not properly enforce the log-out-on-disconnect feature when configured in the [system port console] stanza which allows physically proximate attackers to reconnect to the console port and gain administrative access by leveraging access to the device.
Reference
http://www.securityfocus.com/bid/74019 http://www.securitytracker.com/id/1032091 https://kb.juniper.net/InfoCenter/index?page=content&id=JSA10672
Share on: