Lucene search

K
cve[email protected]CVE-2013-6013
HistoryOct 17, 2013 - 11:55 p.m.

CVE-2013-6013

2013-10-1723:55:04
CWE-119
web.nvd.nist.gov
22
buffer overflow
juniper junos
flow daemon
flowd
remote code execution
telnet
nvd
cve-2013-6013

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

8.2 High

AI Score

Confidence

Low

0.11 Low

EPSS

Percentile

95.1%

Buffer overflow in the flow daemon (flowd) in Juniper Junos 10.4 before 10.4S14, 11.4 before 11.4R7-S2, 12.1.X44 before 12.1X44-D15, 12.1X45 before 12.1X45-D10 on SRX devices, when using telnet pass-through authentication on the firewall, might allow remote attackers to execute arbitrary code via a crafted telnet message.

Affected configurations

NVD
Node
juniperjunosRange10.4
OR
juniperjunosMatch4.0
OR
juniperjunosMatch4.1
OR
juniperjunosMatch4.2
OR
juniperjunosMatch4.3
OR
juniperjunosMatch4.4
OR
juniperjunosMatch5.0
OR
juniperjunosMatch5.1
OR
juniperjunosMatch5.2
OR
juniperjunosMatch5.3
OR
juniperjunosMatch5.4
OR
juniperjunosMatch5.5
OR
juniperjunosMatch5.6
OR
juniperjunosMatch5.7
OR
juniperjunosMatch6.0
OR
juniperjunosMatch6.1
OR
juniperjunosMatch6.2
OR
juniperjunosMatch6.3
OR
juniperjunosMatch6.4
OR
juniperjunosMatch7.0
OR
juniperjunosMatch7.1
OR
juniperjunosMatch7.2
OR
juniperjunosMatch7.3
OR
juniperjunosMatch7.4
OR
juniperjunosMatch7.5
OR
juniperjunosMatch7.6
OR
juniperjunosMatch8.0
OR
juniperjunosMatch8.1
OR
juniperjunosMatch8.2
OR
juniperjunosMatch8.3
OR
juniperjunosMatch8.4
OR
juniperjunosMatch9.0
OR
juniperjunosMatch9.1
OR
juniperjunosMatch9.2
OR
juniperjunosMatch9.4
OR
juniperjunosMatch9.5
OR
juniperjunosMatch9.6
OR
juniperjunosMatch11.4
OR
juniperjunosMatch12.1x44
OR
juniperjunosMatch12.1x45
AND
junipersrx100Match-
OR
junipersrx110Match-
OR
junipersrx1400Match-
OR
junipersrx210Match-
OR
junipersrx220Match-
OR
junipersrx240Match-
OR
junipersrx3400Match-
OR
junipersrx3600Match-
OR
junipersrx550Match-
OR
junipersrx5600Match-
OR
junipersrx5800Match-
OR
junipersrx650Match-

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

8.2 High

AI Score

Confidence

Low

0.11 Low

EPSS

Percentile

95.1%

Related for CVE-2013-6013