Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2023-36845— Junos OS: EX and SRX Series: A PHP vulnerability in J-Web allows an unauthenticated to control an important environment variable

Quick assessment

Affected
Juniper Networks Junos OS
Exploitation
Confirmed exploitation in the wild; remediate immediately
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Juniper Networks Junos OS EX是美国瞻博网络(Juniper Networks)公司的一套专用于该公司的硬件设备的网络操作系统。该操作系统提供了安全编程接口和Junos SDK。 Juniper Networks Junos OS EX存在安全漏洞,该漏洞源于J-Web模块存在PHP外部变量修改漏洞。

CVSS 9.8 · Critical KEV EPSS 95.07% · P100
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2023-36845

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Junos OS: EX and SRX Series: A PHP vulnerability in J-Web allows an unauthenticated to control an important environment variable
Source: CVE Program / CVE List V5
Vulnerability Description
A PHP External Variable Modification vulnerability in J-Web of Juniper Networks Junos OS on EX Series and SRX Series allows an unauthenticated, network-based attacker to remotely execute code. Using a crafted request which sets the variable PHPRC an attacker is able to modify the PHP execution environment allowing the injection und execution of code. This issue affects Juniper Networks Junos OS on EX Series and SRX Series: * All versions prior to 20.4R3-S9; * 21.1 versions 21.1R1 and later; * 21.2 versions prior to 21.2R3-S7; * 21.3 versions prior to 21.3R3-S5; * 21.4 versions prior to 21.4R3-S5; * 22.1 versions prior to 22.1R3-S4; * 22.2 versions prior to 22.2R3-S2; * 22.3 versions prior to 22.3R2-S2, 22.3R3-S1; * 22.4 versions prior to 22.4R2-S1, 22.4R3; * 23.2 versions prior to 23.2R1-S1, 23.2R2.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
PHP参数外部修改
Source: CVE Program / CVE List V5
Vulnerability Title
Juniper Networks Junos OS EX 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Juniper Networks Junos OS EX是美国瞻博网络(Juniper Networks)公司的一套专用于该公司的硬件设备的网络操作系统。该操作系统提供了安全编程接口和Junos SDK。 Juniper Networks Junos OS EX存在安全漏洞,该漏洞源于J-Web模块存在PHP外部变量修改漏洞。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Shenlong Deep Dive — AI Deep Analysis

10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.

Affected Products

Vendor Product Affected Versions CPE Subscribe
Juniper Networks Junos OS 0 ~ 20.4R3-S9 -

II. Public POCs for CVE-2023-36845

# POC Description Source Link Shenlong Link
1 A tool to discover Juniper firewalls vulnerable to CVE-2023-36845 https://github.com/vulncheck-oss/cve-2023-36845-scanner POC Details
2 Juniper Firewalls CVE-2023-36845 - RCE https://github.com/kljunowsky/CVE-2023-36845 POC Details
3 PoC CVE-2023-36845 on Juniper Device https://github.com/toanln-cov/CVE-2023-36845 POC Details
4 None https://github.com/halencarjunior/CVE-2023-36845 POC Details
5 CVE-2023-36845 - Juniper Firewall Remote code execution (RCE) https://github.com/zaenhaxor/CVE-2023-36845 POC Details
6 None https://github.com/simrotion13/CVE-2023-36845 POC Details
7 PoC & vulnerability detector for Juniper EX switches and SRX firewalls https://github.com/WhiteOwl-Pub/PoC-Vuln-Detector-juniper-cve-2023-36845 POC Details
8 CVE-2023-36845 PoC script automates the PoC for CVE-2023-36845 targeting Juniper Networks Junos OS's J-Web component on EX and SRX Series devices. It exploits a PHP flaw, allowing remote modification of the PHPRC variable. Successful exploitation can lead to code injection and execution. https://github.com/cyberh3als/CVE-2023-36845-POC POC Details
9 Ansible Playbook for CVE-2023-36845 https://github.com/ditekshen/ansible-cve-2023-36845 POC Details
10 proof of Concept and Vulnerability Detector for CVE-2023-36845 https://github.com/WhiteOwl-Pub/Juniper-PoC-CVE-2023-36845 POC Details
11 Simple Automation script for juniper cve-2023-36845 https://github.com/Asbawy/Automation-for-Juniper-cve-2023-36845 POC Details
12 Juniper RCE (Remote Code Execution) CVE-2023-36845 is a vulnerability that has been identified within Juniper's software. This particular flaw allows for remote code execution, meaning an attacker could run arbitrary code on a system without needing physical access to the device. https://github.com/jahithoque/Juniper-CVE-2023-36845-Mass-Hunting POC Details
13 None https://github.com/cyb3rzest/Juniper-Bug-Automation-CVE-2023-36845 POC Details
14 None https://github.com/CharonDefalt/Juniper-exploit-CVE-2023-36845 POC Details
15 CVE-2023-36845 и CVE-2023-36846 Juniper Junos OS J-Web RCE https://github.com/iveresk/CVE-2023-36845-6- POC Details
16 CVES https://github.com/ak1t4/CVE-2023-36845 POC Details
17 This Python script automates the Proof of Concept (PoC) for CVE-2023-36845, a vulnerability impacting Juniper Networks Junos OS on EX and SRX Series devices. The vulnerability resides in the J-Web component, allowing remote manipulation of the PHPRC variable, potentially leading to code injection. https://github.com/0xNehru/CVE-2023-36845-Juniper-Vulnerability POC Details
18 Juniper - Remote Code Execution (CVE-2023-36845) PreAuth-RCE Exploits https://github.com/imhunterand/CVE-2023-36845 POC Details
19 A PHP External Variable Modification vulnerability in J-Web of Juniper Networks Junos OS on EX Series and SRX Series allows an unauthenticated, network-based attacker to remotely execute code. https://github.com/ifconfig-me/CVE-2023-36845 POC Details
20 CVE-2023-36845 – Unauthenticated Juniper Remote Code Execution Vulnerability Scanner https://github.com/e11i0t4lders0n/CVE-2023-36845 POC Details
21 Ansible Playbook for CVE-2023-36845(Juniper Networks Junos OS 远程代码执行漏洞) https://github.com/CKevens/ansible-cve-2023-36845 POC Details
22 None https://github.com/Vignesh2712/Automation-for-Juniper-cve-2023-36845 POC Details
23 None https://github.com/Vignesh2712/utomation-for-Juniper-cve-2023-36845 POC Details
24 Ansible Playbook for CVE-2023-36845(Juniper Networks Junos OS 远程代码执行漏洞) https://github.com/3yujw7njai/ansible-cve-2023-36845 POC Details
25 Juniper Networks POC Understanding CVE-2023–36845 Remote Code Execution Exploit and Protection https://github.com/functionofpwnosec/CVE-2023-36845 POC Details
26 A go-exploit to scan for Juniper firewalls vulnerable to CVE-2023-36845 cve-2023-36845, go-exploit https://github.com/meekchest/cve-2023-36845-scanner POC Details
27 Ansible Playbook for CVE-2023-36845(Juniper Networks Junos OS 远程代码执行漏洞) https://github.com/AiK1d/ansible-cve-2023-36845 POC Details
28 A PHP External Variable Modification vulnerability in J-Web of Juniper Networks Junos OS on EX Series and SRX Series allows an unauthenticated, network-based attacker to control certain environments variables to execute remote commands https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2023/CVE-2023-36845.yaml POC Details
29 Ansible Playbook for CVE-2023-36845(Juniper Networks Junos OS 远程代码执行漏洞) https://github.com/P4x1s/ansible-cve-2023-36845 POC Details
30 Juniper JunOS J-Web PHP external variable modification (CVE-2023-36845) exploit. https://github.com/kopfjager007/CVE-2023-36845 POC Details
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2023-36845

登录查看更多情报信息。

Other References for CVE-2023-36845 (1)

Same Patch Batch · Juniper Networks · 2023-08-17 · 4 CVEs total

CVE-2023-36846 5.3 MEDIUM Junos OS: SRX Series: A vulnerability in J-Web allows an unauthenticated attacker to uploa
CVE-2023-36844 5.3 MEDIUM Junos OS: EX Series: A PHP vulnerability in J-Web allows an unauthenticated attacker to co
CVE-2023-36847 5.3 MEDIUM Junos OS: EX Series: A vulnerability in J-Web allows an unauthenticated attacker to upload

IV. Related Vulnerabilities

V. Comments for CVE-2023-36845

No comments yet


Leave a comment