Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2015-3002

Juniper Junos 12.1X44 before 12.1X44-D45, 12.1X46 before 12.1X46-D30, 12.1X47 before 12.1X47-D15, and 12.3X48 before 12.3X48-D10 on SRX series devices does not properly enforce the log-out-on-disconnect feature when configured in the [system port console] stanza, which allows physically proximate attackers to reconnect to the console port and gain administrative access by leveraging access to the device.

  • Published: Apr 10, 2015
  • Updated: Apr 13, 2023
  • CVE: CVE-2015-3002
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 6.9
  • AV:L/AC:M/Au:N/C:C/I:C/A:C

CWEs:

Software From Fixed in
juniper / junos 12.1x44-d20 12.1x44-d20.x
juniper / junos 12.1x44-d10 12.1x44-d10.x
juniper / junos 12.1x44-d40 12.1x44-d40.x
juniper / junos 12.1x44-d15 12.1x44-d15.x
juniper / junos 12.1x44-d25 12.1x44-d25.x
juniper / junos 12.1x44-d30 12.1x44-d30.x
juniper / junos 12.1x44 12.1x44.x
juniper / junos 12.1x44-d35 12.1x44-d35.x
juniper / junos 12.1x44-d45 12.1x44-d45.x
juniper / junos 12.1x45-d30 12.1x45-d30.x
juniper / junos 12.1x45-d10 12.1x45-d10.x
juniper / junos 12.1x45-d15 12.1x45-d15.x
juniper / junos 12.1x45 12.1x45.x
juniper / junos 12.1x45-d20 12.1x45-d20.x
juniper / junos 12.1x46-d25 12.1x46-d25.x
juniper / junos 12.1x46 12.1x46.x
juniper / junos 12.1x46-d20 12.1x46-d20.x
juniper / junos 12.1x46-d15 12.1x46-d15.x
juniper / junos 12.1x46-d10 12.1x46-d10.x
juniper / junos 12.1x47-d10 12.1x47-d10.x
juniper / junos 12.1x47 12.1x47.x
juniper / junos 12.1x48 12.1x48.x