Back

MEDIUM

Junos OS Evolved: EvoSharedObjStore may leak sensitive information

Published Apr 8, 2020

Description

A local, authenticated user with shell can obtain the hashed values of login passwords and shared secrets via the EvoSharedObjStore. This issue affects all versions of Junos OS Evolved prior to 19.1R1.

Affected products

Remediation

Vendor solution

The following software releases have been updated to resolve this specific issue: 19.1R1-EVO, 19.2R1-EVO, and all subsequent releases.

Weaknesses (2)

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner juniper
Published Apr 8, 2020
Updated Sep 16, 2024
Reserved Nov 4, 2019
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner juniper
Published Apr 8, 2020
Updated Sep 16, 2024
Exploited since n/a
EUVD-2020-12490