On Juniper ATP, secret passphrase CLI inputs, such as "set mcm", are logged to /var/log/syslog in clear text, allowing authenticated local user to be able to view these secret information. This issue affects Juniper ATP 5.0 versions prior to 5.0.4.
References
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: juniper

Published: 2019-01-15T21:00:00Z

Updated: 2024-09-16T20:48:00.968Z

Reserved: 2018-10-11T00:00:00

Link: CVE-2019-0021

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-01-15T21:29:01.637

Modified: 2019-10-09T23:43:31.880

Link: CVE-2019-0021

cve-icon Redhat

No data.