CVE-2024-39565
Last modified
CVE-2024-39565 is a high-severity vulnerability rated 8.8/10 on the CVSS scale. An Improper Neutralization of Data within XPath Expressions ('XPath Injection') vulnerability in J-Web shipped with Juniper Networks Junos OS allows an unauthenticated, network-based attacker to execute remote commands on the target device. While an administrator is logged into a J-Web session or has previously logged in and subsequently logged out of their J-Web session, the attacker can arbitrarily execute commands on the target device with the other user's credentials. In the worst case, the attacker will have full control over the device. This issue affects Junos OS: * All versions before 21.2R3-S8, * from 21.4 before 21.4R3-S7, * from 22.2 before 22.2R3-S4, * from 22.3 before 22.3R3-S3, * from 22.4 before 22.4R3-S2, * from 23.2 before 23.2R2, * from 23.4 before 23.4R1-S1, 23.4R2.. EPSS estimates a 0.52% chance of exploitation in the next 30 days.
Description
An Improper Neutralization of Data within XPath Expressions ('XPath Injection') vulnerability in J-Web shipped with Juniper Networks Junos OS allows an unauthenticated, network-based attacker to execute remote commands on the target device. While an administrator is logged into a J-Web session or has previously logged in and subsequently logged out of their J-Web session, the attacker can arbitrarily execute commands on the target device with the other user's credentials. In the worst case, the attacker will have full control over the device. This issue affects Junos OS: * All versions before 21.2R3-S8, * from 21.4 before 21.4R3-S7, * from 22.2 before 22.2R3-S4, * from 22.3 before 22.3R3-S3, * from 22.4 before 22.4R3-S2, * from 23.2 before 23.2R2, * from 23.4 before 23.4R1-S1, 23.4R2.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:X/V:C/RE:M/U:Amber
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Juniper | J-Web | All versions |
| Juniper | Junos | < 21.2 |
| Juniper | Junos | 21.2 |
| Juniper | Junos | 21.4 |
| Juniper | Junos | 22.2 |
| Juniper | Junos | 22.3 |
| Juniper | Junos | 22.4 |
| Juniper | Junos | 23.2 |
| Juniper | Junos | 23.4 |
References
- https://support.juniper.net/support/downloads/?p=283Patch, Product
- https://supportportal.juniper.net/JSA83023Vendor Advisory
- https://support.juniper.net/support/downloads/?p=283Patch, Product
- https://supportportal.juniper.net/JSA83023Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2024-39565?
How severe is CVE-2024-39565?
How do I fix CVE-2024-39565?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2024
- CVE-2024-3956The Pods – Custom Content Types and Fields plugin for WordPr…5.4
- CVE-2024-39560An Improper Handling of Exceptional Conditions vulnerability…7.1
- CVE-2024-39561An Improper Check for Unusual or Exceptional Conditions vuln…6.9
- CVE-2024-39562A Missing Release of Resource after Effective Lifetime vulne…8.7
- CVE-2024-39563A Command Injection vulnerability in Juniper Networks Junos …7.3
- CVE-2024-39564This is a similar, but different vulnerability than the issu…8.7
- CVE-2024-39567A vulnerability has been identified in SINEMA Remote Connect…8.5
- CVE-2024-39568A vulnerability has been identified in SINEMA Remote Connect…7.8
- CVE-2024-39569A vulnerability has been identified in SINEMA Remote Connect…7.2
- CVE-2024-3957The Booster for WooCommerce plugin is vulnerable to Unauthen…7.3
- CVE-2024-39570A vulnerability has been identified in SINEMA Remote Connect…8.8
- CVE-2024-39571A vulnerability has been identified in SINEMA Remote Connect…8.8
Are you affected by CVE-2024-39565?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
