Database/Firmware, BMC & network fabric
Juniper Junos OS J-Web (EX/SRX): Unauthenticated remote code execution by setting `PHPRC` through a crafted J-Web
CVSS 9.8CVE-2023-36845Firmware, BMC & network fabricKnown exploitedcurated
Impact
Unauthenticated remote code execution by setting PHPRC through a crafted J-Web request; chained with the other J-Web bugs for full device takeover
Who can reach it
Network, unauthenticated
What to do
Junos upgrade or disabling J-Web entirely; on a management-plane switch the fastest mitigation is turning J-Web off, which removes the GUI ops staff depend on
References
Related entries
- Insyde InsydeH2O (AsfSecureBootDxe): Stack buffer overflow leading to arbitrary code execution during the DXE phaseCVE-2023-39281 · Insyde InsydeH2O (AsfSecureBootDxe)Critical
- lldpd (CDP PDU parser, cdp_decode): A crafted CDP PDU with specific CDP_TLV_ADDRESSES TLVs forces lldpdCVE-2023-41910 · lldpd (CDP PDU parser, cdp_decode)Critical
- Broadcom LSI Storage Authority (LSA) / Intel RAID Web Console 3 (RWC3)CVE-2023-4323 · Broadcom LSI Storage Authority (LSA) / Intel RAID Web Console 3 (RWC3) - management service for MegaRAID and LSI HBA…Critical
- ATEN PE6208 switched PDU: The PDU ships with a default telnet account and never forces the operator to changeCVE-2023-43845 · ATEN PE6208 switched PDUCritical
- Linux kernel (drivers/infiniband/ulp/srp): The SRP abort handler completes the SCSI command itself, after which theCVE-2023-52515 · Linux kernel (drivers/infiniband/ulp/srp)Critical
- Linux kernel (drivers/net/ethernet/mellanox/mlx5/core/en/xsk): An RX buffer on the legacy receive queue is releasedCVE-2023-54223 · Linux kernel (drivers/net/ethernet/mellanox/mlx5/core/en/xsk)Critical
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.