An Unprotected Storage of Credentials vulnerability in the identity and access management certificate generation procedure allows a local attacker to gain access to confidential information. This issue affects: Juniper Networks SBR Carrier: 8.4.1 versions prior to 8.4.1R13; 8.5.0 versions prior to 8.5.0R4.
The following software releases have been updated to resolve this specific issue: 8.4.1R13, 8.5.0R4 and all subsequent releases.
There are no viable workarounds for this issue.
| Product | Vulnerable range | Fixed version | Advisory |
|---|---|---|---|
| Juniper Networks SBR Carrier | >=8.4.1<8.4.1R13 | 8.4.1R13 | advisory ↗ |
| Juniper Networks SBR Carrier | >=8.5.0<8.5.0R4 | 8.5.0R4 | advisory ↗ |