Back

CRITICAL

Juniper ATP: Hard coded credentials used in Web Collector

Published Jan 15, 2019

Description

Juniper ATP ships with hard coded credentials in the Web Collector instance which gives an attacker the ability to take full control of any installation of the software. Affected releases are Juniper Networks Juniper ATP: 5.0 versions prior to 5.0.3.

Affected products

Remediation

Vendor solution

The following software release have been updated to resolve this specific issue: 5.0.3 and all subsequent releases.

Metrics

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner juniper
Published Jan 15, 2019
Updated Sep 16, 2024
Reserved Oct 11, 2018
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a