CVE-2015-7754
high
CVSS v3
8.1
CVSS v2
9.3
VIR risk
8.1
Description
Juniper ScreenOS before 6.3.0r21, when ssh-pka is configured and enabled, allows remote attackers to cause a denial of service (system crash) or execute arbitrary code via crafted SSH negotiation.
Predictions
Exploit likelihood
88%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: cve@mitre.org — http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10712
References
CWEs
CWE-20
Verify integrity in audit chain (admin only). AS-IS.