CVE-2023-36845KEV · OVERDUECWE-473

Junos OS: EX and SRX Series: A PHP vulnerability in J-Web allows an unauthenticated to control an important environment variable

Critical · published August 17, 2023

Patch now

Confirmed exploited, and the score agrees

CVSS calls it critical at 9.8. It is confirmed in active exploitation. It sits in the 99.8th percentile for exploit probability.

1025
days past CISA
deadline
CVSS v3.1
9.8
EPSS
95%
Percentile
99.8
In the wild
Confirmed
What it is

🚨 An unauthenticated network-based attacker can remotely execute code just by sending a crafted request! This PHP External Variable Modification flaw in Juniper Networks' J-Web is a real game changer. 🔥 Think of it like a sneaky delivery person who can change the destination of your package before it even arrives at your door—only now, they’re changing the entire execution environment of your PHP setup! If exploited, an attacker could gain complete control over your system, executing malicious code at will. This could lead to unauthorized access to sensitive data, disruption of services, or even a complete takeover of your network. The stakes are incredibly high!

Put simply

Think of it like a sneaky delivery person who can change the destination of your package before it even arrives at your door—only now, they’re changing the entire execution environment of your PHP setup! This vulnerability in Junos OS allows an attacker to modify the PHPRC variable, altering the PHP execution environment and enabling code injection and execution. This means that attackers can run their own code on affected devices without needing authentication.

What to do

If exploited, an attacker could gain complete control over your system, executing malicious code at will. This could lead to unauthorized access to sensitive data, disruption of services, or even a complete takeover of your network. The stakes are incredibly high! Immediate action is essential: upgrade to versions 20.4R3-S9 or later for all relevant 21.x and 22.x versions as specified. Always keep your systems updated and monitor for any unusual activity. 🛡️ You’ve got this! With these steps, you can secure your systems and stand strong against this vulnerability! 💪✨

The record
Technical detail
CVSS v3.1
9.8 · CRITICAL
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS v4.0
Not supplied
EPSS
0.94595 · 99.8th percentile
Weakness
CWE-473 · PHP External Variable Modification
Published
2023-08-17T19:17Z
KEV added
2023-11-13 · due 2023-11-17
EPSS history
Timeline
  • 13 NOV 00:00Z
    Added to CISA KEV — remediate by Nov 17
    kev
  • 17 AUG 19:17Z
    Junos OS: EX and SRX Series: A PHP vulnerability in J-Web allows an unauthenticated to control an important environment variable
    cvelistv5