CVE-2014-3812

The Juniper Junos Pulse Secure Access Service (SSL VPN) devices with IVE OS before 7.4r5 and 8.x before 8.0r1 and Junos Pulse Access Control Service (UAC) before 4.4r5 and 5.x before 5.0r1 enable cipher suites with weak encryption algorithms, which make it easier for remote attackers to obtain sensitive information by sniffing the network.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:N/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 40%
VendorProductVersion
juniperive_os
7.4
juniperive_os
8.0
juniperunified_access_control_software
4.4
juniperunified_access_control_software
5.0
juniperfips_infranet_controller_6500
-
juniperfips_secure_access_4000
-
juniperfips_secure_access_4500
-
juniperfips_secure_access_6000
-
juniperfips_secure_access_6500
-
juniperinfranet_controller_4000
-
juniperinfranet_controller_4500
-
juniperinfranet_controller_6000
-
juniperinfranet_controller_6500
-
junipermag2600_gateway
-
junipermag4610_gateway
-
junipermag6610_gateway
-
junipermag6611_gateway
-
junipersecure_access_2500
-
junipersecure_access_4500
-
junipersecure_access_700
-
𝑥
= Vulnerable software versions
Common Weakness Enumeration