CVE-2013-3970
Last modified
CVE-2013-3970 is a vulnerability of currently unknown severity. Juniper Junos Pulse Secure Access Service (aka SSL VPN) with IVE OS 7.0r2 through 7.0r8 and 7.1r1 through 7.1r5 and Junos Pulse Access Control Service (aka UAC) with UAC OS 4.1r1 through 4.1r5 include a test Certification Authority (CA) certificate in the Trusted Server CAs list, which makes it easier for man-in-the-middle attackers to spoof SSL servers by leveraging control over that test CA.. EPSS estimates a 0.49% chance of exploitation in the next 30 days.
Description
Juniper Junos Pulse Secure Access Service (aka SSL VPN) with IVE OS 7.0r2 through 7.0r8 and 7.1r1 through 7.1r5 and Junos Pulse Access Control Service (aka UAC) with UAC OS 4.1r1 through 4.1r5 include a test Certification Authority (CA) certificate in the Trusted Server CAs list, which makes it easier for man-in-the-middle attackers to spoof SSL servers by leveraging control over that test CA.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Juniper | Junos Pulse Secure Access Service | 7.0r2 |
| Juniper | Junos Pulse Secure Access Service | 7.0r3 |
| Juniper | Junos Pulse Secure Access Service | 7.0r4 |
| Juniper | Junos Pulse Secure Access Service | 7.0r5 |
| Juniper | Junos Pulse Secure Access Service | 7.0r5.1 |
| Juniper | Junos Pulse Secure Access Service | 7.0r6 |
| Juniper | Junos Pulse Secure Access Service | 7.0r7 |
| Juniper | Junos Pulse Secure Access Service | 7.0r8 |
| Juniper | Junos Pulse Secure Access Service | 7.1r1 |
| Juniper | Junos Pulse Secure Access Service | 7.1r1.1 |
| Juniper | Junos Pulse Secure Access Service | 7.1r2 |
| Juniper | Junos Pulse Secure Access Service | 7.1r3 |
| Juniper | Junos Pulse Secure Access Service | 7.1r4 |
| Juniper | Junos Pulse Secure Access Service | 7.1r5 |
| Juniper | Junos Pulse Access Control Service | 4.1r1 |
| Juniper | Junos Pulse Access Control Service | 4.1r1.1 |
| Juniper | Junos Pulse Access Control Service | 4.1r2 |
| Juniper | Junos Pulse Access Control Service | 4.1r3 |
| Juniper | Junos Pulse Access Control Service | 4.1r4 |
| Juniper | Junos Pulse Access Control Service | 4.1r5 |
References
- http://kb.juniper.net/JSA10571Patch, Vendor Advisory
- http://kb.juniper.net/JSA10571Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2013-3970?
How severe is CVE-2013-3970?
How do I fix CVE-2013-3970?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2013
- CVE-2013-3960Easytime Studio Easy File Manager 1.1 has a HTTP request sec…9.9
- CVE-2013-3961SQL injection vulnerability in edit_event.php in Simple PHP …
- CVE-2013-3962Cross-site scripting (XSS) vulnerability in Grandstream GXV3…
- CVE-2013-3963Cross-site request forgery (CSRF) vulnerability in goform/us…
- CVE-2013-3964Cross-site scripting (XSS) vulnerability in Samsung SHR-5162…
- CVE-2013-3969The find prototype in scripting/engine_v8.h in MongoDB 2.4.0…
- CVE-2013-3971IBM Maximo Asset Management 7.1 through 7.1.1.12 and 7.5 bef…
- CVE-2013-3972IBM Maximo Asset Management 7.1 before 7.1.1.12 and 7.5 befo…
- CVE-2013-3973SQL injection vulnerability in IBM Maximo Asset Management 7…
- CVE-2013-3975Unspecified vulnerability in the Meeting Server in IBM Samet…
- CVE-2013-3976The (1) Data Protection for Exchange component 6.1 before 6.…
- CVE-2013-3977The Meeting Server in IBM Sametime 8.x through 8.5.2.1 and 9…
Are you affected by CVE-2013-3970?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
