Vulnerability Database

296,202

Total vulnerabilities in the database

CVE-2014-6448

Juniper Junos OS 13.2 before 13.2R5, 13.2X51, 13.2X52, and 13.3 before 13.3R3 allow local users to bypass intended restrictions and execute arbitrary Python code via vectors involving shell access.

  • Published: Jan 15, 2020
  • Updated: Apr 13, 2023
  • CVE: CVE-2014-6448
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 7.8
  • AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CVSS v2:

  • Severity: High
  • Score: 7.2
  • AV:L/AC:L/Au:N/C:C/I:C/A:C

CWEs:

Software From Fixed in
juniper / junos 13.3-r1 13.3-r1.x
juniper / junos 13.2-r4 13.2-r4.x
juniper / junos 13.2-r3 13.2-r3.x
juniper / junos 13.2-r2 13.2-r2.x
juniper / junos 13.3-r2 13.3-r2.x
juniper / junos 13.2-r1 13.2-r1.x
juniper / junos 13.2x51 13.2x51.x
juniper / junos 13.3 13.3.x
juniper / junos 13.2 13.2.x
juniper / junos 13.2x52 13.2x52.x