CVE-2019-0022 - CVE House
Back to Database
Status published Critical CVE-2019-0022

Juniper ATP: Two hard coded credentials sharing the same password give an attacker the ability to take control of any installation of the software.

Vulnerability Description

Juniper ATP ships with hard coded credentials in the Cyphort Core instance which gives an attacker the ability to take full control of any installation of the software. Affected releases are Juniper Networks Juniper ATP: 5.0 versions prior to 5.0.3.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2019-0022

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Juniper Networks

View all reports →

Affected Software

Juniper ATP
Vulnerable Versions:
5.0

Timeline

Official Publish: January 15th, 2019
Last Modified: September 16th, 2024
Added to House: July 20th, 2026

CVSS Vectors

V3: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Weaknesses (CWE)