Back to Database
Status published
Medium
CVE-2020-1622
Junos OS Evolved: EvoSharedObjStore may leak sensitive information
Vulnerability Description
A local, authenticated user with shell can obtain the hashed values of login passwords and shared secrets via the EvoSharedObjStore. This issue affects all versions of Junos OS Evolved prior to 19.1R1.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-1622
Credits & Attribution
No credits recorded in the NVD database.
References
More from Juniper Networks
View All →CVE-2025-6549
Junos OS: SRX Series: J-Web can be exposed on additional interfaces
Medium
6.9
CVE-2025-60011
Junos OS and Junos OS Evolved: Optional transitive BGP attribute is modified before propagation to peers causing sessions to flap
Medium
6.9
CVE-2025-60010
Junos OS and Junos OS Evolved: Device allows login for user with expired password
Medium
5.3
CVE-2025-60009
Junos Space: CLI Configlet page is vulnerable to reflected cross-site script injection
Medium
5.1
CVE-2025-60007
Junos OS: A specifically crafted 'show chassis' command causes chassisd to crash
Medium
6.8
Affected Vendor
Juniper Networks
View all reports →Affected Software
Junos OS Evolved
Vulnerable Versions:
unspecified
Timeline
Official Publish:
April 8th, 2020
Last Modified:
September 16th, 2024
Added to House:
July 21st, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Weaknesses (CWE)
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.