CVE Published: 16/10/2020 |
CVE Updated: 16/09/2024 |
CVE Year: 2020 Source: juniper |
Vendor: Juniper Networks |
Product: Junos OS Evolved Status : PUBLISHED
CVE-2020-1666 Description
The system console configuration option \'log-out-on-disconnect\' In Juniper Networks Junos OS Evolved fails to log out an active CLI session when the console cable is disconnected. This could allow a malicious attacker with physical access to the console the ability to resume a previous interactive session and possibly gain administrative privileges. This issue affects all Juniper Networks Junos OS Evolved versions after 18.4R1-EVO, prior to 20.2R1-EVO.
Metrics
CVSS Version: 3.1 |
Base Score: 6.6 MEDIUM Vector: CVSS:3.1/AV:P/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H