"value":"The examples of the config stanza affected by this issue:\n\n [event-options event-script file <file-name> source <https-url> refresh]\n [system scripts (commit | event | extension-service | op | snmp) file filename refresh-from <https-url>]\n\nPlease note that issuing set refresh-from command does not add the refresh-from statement to the configuration but the command behaves like an operational mode command by executing an operation."
"value":"An Improper Certificate Validation weakness in the Juniper Networks Junos OS allows an attacker to perform Person-in-the-Middle (PitM) attacks when a system script is fetched from a remote source at a specified HTTPS URL, which may compromise the integrity and confidentiality of the device. The following command can be executed by an administrator via the CLI to refresh a script from a remote location, which is affected from this vulnerability: >request system scripts refresh-from (commit | event | extension-service | op | snmp) file filename url <https-url> This issue affects: Juniper Networks Junos OS All versions prior to 18.4R2-S9, 18.4R3-S9; 19.1 versions prior to 19.1R2-S3, 19.1R3-S7; 19.2 versions prior to 19.2R1-S7, 19.2R3-S3; 19.3 versions prior to 19.3R3-S4; 19.4 versions prior to 19.4R3-S7; 20.1 versions prior to 20.1R2-S2, 20.1R3; 20.2 versions prior to 20.2R3; 20.3 versions prior to 20.3R2-S1, 20.3R3; 20.4 versions prior to 20.4R2; 21.1 versions prior to 21.1R1-S1, 21.1R2."
"value":"CWE-358 Improperly Implemented Security Check for Standard"
}
]
},
{
"description":[
{
"lang":"eng",
"value":"CWE-295 Improper Certificate Validation"
}
]
},
{
"description":[
{
"lang":"eng",
"value":"CWE-300 Channel Accessible by Non-Endpoint ('Man-in-the-Middle')"
}
]
}
]
},
"references":{
"reference_data":[
{
"name":"https://kb.juniper.net/JSA11264",
"refsource":"CONFIRM",
"url":"https://kb.juniper.net/JSA11264"
}
]
},
"solution":[
{
"lang":"eng",
"value":"The following software releases have been updated to resolve this specific issue: 18.4R2-S9, 18.4R3-S9, 19.1R2-S3, 19.1R3-S7, 19.2R1-S7, 19.2R3-S3, 19.3R3-S4, 19.4R3-S7, 20.1R2-S2, 20.1R3, 20.2R3, 20.3R2-S1, 20.3R3, 20.4R2, 21.1R1-S1, 21.1R2, 21.2R1 and all subsequent releases.\n"
}
],
"source":{
"advisory":"JSA11264",
"defect":[
"1542229"
],
"discovery":"USER"
},
"work_around":[
{
"lang":"eng",
"value":"There are no viable workarounds for this issue.\n\n "