AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-0023

MEDIUM · CVSS 5.5 EPSS 0.31%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-04-11 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.5. It affects GitHub.

CVE
CVE-2018-0023
Severity
MEDIUM
CVSS
5.5
EPSS
0.31%
GitHub

Original NVD Description

JSNAPy is an open source python version of Junos Snapshot Administrator developed by Juniper available through github. The default configuration and sample files of JSNAPy automation tool versions prior to 1.3.0 are created world writable. This insecure file and directory permission allows unprivileged local users to alter the files under this directory including inserting operations not intended by the package maintainer, system administrator, or other users. This issue only affects users who downloaded and installed JSNAPy from github.

Related CVEs

Other vulnerabilities affecting the same vendor(s)