NVD disclosure day

Published threat advisories for August 17, 2023

CVE advisoryKnown Exploit

CVE-2023-36847

Juniper Junos OS EX Series File Integrity Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A vulnerability in Juniper Networks Junos OS on EX Series devices allows unauthenticated network access to upload arbitrary files via J-Web. This impacts file system integrity, posing a business risk by potentially enabling further compromise.

• CISA KEV

CVE advisoryKnown Exploit

CVE-2023-36845

Juniper Junos OS: Remote Code Execution Via J-Web

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

A vulnerability in Juniper Networks Junos OS allows an unauthenticated attacker to execute arbitrary code on EX and SRX Series devices by manipulating PHP environment variables. This poses a risk of unauthorized system access and control for affected organizations.A vulnerability in Juniper Networks Junos OS affects EX

• CISA KEV