OS Command Injection Vulnerability in Juniper Networks Junos OS Evolved gNOI Server Module

OS Command Injection Vulnerability in Juniper Networks Junos OS Evolved gNOI Server Module

CVE-2023-28983 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

An OS Command Injection vulnerability in gRPC Network Operations Interface (gNOI) server module of Juniper Networks Junos OS Evolved allows an authenticated, low privileged, network based attacker to inject shell commands and execute code. This issue affects Juniper Networks Junos OS Evolved 21.4 version 21.4R1-EVO and later versions prior to 22.1R1-EVO.

Learn more about our Cis Benchmark Audit For Juniper.