Index
Bugtraq
Pełna lista
Błędy
Sztuczki
Exploity
Dorks list
Tylko z CVE
Tylko z CWE
Bogus
Ranking
CVEMAP
Świeża lista CVE
Producenci
Produkty
Słownik CWE
Sprawdź nr. CVE
Sprawdź nr. CWE
Szukaj
W Bugtraq
W bazie CVE
Po autorze
Po nr. CVE
Po nr. CWE
Po producencie
Po produkcie
RSS
Bugtraq
CVEMAP
CVE Produkty
Tylko Błędy
Tylko Exploity
Tylko Dorks
Więcej
cIFrex
Facebook
Twitter
Donate
O bazie
Lang
Polish
English
Submit
Podatności dla
'Paragon active assurance control center'
2022-04-14
CVE-2022-22190
CWE-863
An Improper Access Control vulnerability in the Juniper Networks Paragon Active Assurance Control Center allows an unauthenticated attacker to leverage a crafted URL to generate PDF reports, potentially containing sensitive configuration information. A feature was introduced in version 3.1 of the Paragon Active Assurance Control Center which allows users to selective share account data using a unique identifier. Knowing the proper format of the URL and the identifier of an existing object in an application it is possible to get access to that object without being logged in, even if the object is not shared, resulting in the opportunity for malicious exfiltration of user data. Note that the Paragon Active Assurance Control Center SaaS offering is not affected by this issue. This issue affects Juniper Networks Paragon Active Assurance version 3.1.0.
2021-04-22
CVE-2021-0232
CWE-668
An authentication bypass vulnerability in the Juniper Networks Paragon Active Assurance Control Center may allow an attacker with specific information about the deployment to mimic an already registered Test Agent and access its configuration including associated inventory details. If the issue occurs, the affected Test Agent will not be able to connect to the Control Center. This issue affects Juniper Networks Paragon Active Assurance Control Center All versions prior to 2.35.6; 2.36 versions prior to 2.36.2.
>>>
Vendor:
Juniper
101
Produkty
Netscreen screenos
Netscreen remote security client
Netscreen remote vpn client
Screenos
Junos
Netscreen-5gt
Netscreen-idp
Netscreen-idp 10
Netscreen-idp 100
Netscreen-idp 1000
Netscreen-idp 500
Junos e
Junos j
Junos m
Junos t
Junose e
Junose j
Junose m
Junose t
Netscreen-security manager 2004
Junose
Junipersetup control
DX
Http service
Session and resource control
Src pe
Secure access 2000
JNOS
Odyssey access client
IDP
Secure access
Networks mobility system software
Junos space
Junos space virtual appliance
Junos space ja1500 appliance
Smartpass
Junos pulse access control service
Junos pulse secure access service
Srx100
Srx110
Srx1400
Srx210
Srx220
Srx240
Srx3400
Srx3600
Srx550
Srx5600
Srx5800
Srx650
Secure access virtual appliance
Fips secure access 4000
Fips secure access 4500
Fips secure access 6000
Fips secure access 6500
Mag2600 gateway
Mag4610 gateway
Mag6610 gateway
Mag6611 gateway
Secure access 2500
Secure access 4000
Secure access 4500
Secure access 6000
Secure access 6500
Secure access 700
Ive os
Idp250
Idp75
Idp800
Idp8200
Netscreen-5200
Netscreen-5400
Network and security manager software
Nsm3000
Nsmexpress
Junos space ja2500 appliance
Fips infranet controller 6500
Infranet controller 4000
Infranet controller 4500
Infranet controller 6000
Infranet controller 6500
Unified access control software
Juniper installer service client
Junos pulse client
Mobile system software
Ringmaster
Pulse connect secure
Advanced threat protection
Northstar controller
Contrail
Trusted platform module firmware
Appformix
Libslax
Jsnapy
Junos os evolved
Virtual advanced threat protection
Junos evolved
Contrail networking
Paragon active assurance control center
Ctpview
Zobacz wszystkie produkty dla producenta
Juniper
Copyright
2024
, cxsecurity.com
Back to Top