CVE-2023-36845
Junos OS: EX and SRX Series: A PHP vulnerability in J-Web allows an unauthenticated to control an important environment variable
Basic Information
- CVE State
- PUBLISHED
- Reserved Date
- June 27, 2023
- Published Date
- August 17, 2023
- Last Updated
- February 13, 2025
- Vendor
- Juniper Networks
- Product
- Junos OS
- Description
- A PHP External Variable Modification vulnerability in J-Web of Juniper Networks Junos OS on EX Series and SRX Series allows an unauthenticated, network-based attacker to remotely execute code. Using a crafted request which sets the variable PHPRC an attacker is able to modify the PHP execution environment allowing the injection und execution of code. This issue affects Juniper Networks Junos OS on EX Series and SRX Series: * All versions prior to 20.4R3-S9; * 21.1 versions 21.1R1 and later; * 21.2 versions prior to 21.2R3-S7; * 21.3 versions prior to 21.3R3-S5; * 21.4 versions prior to 21.4R3-S5; * 22.1 versions prior to 22.1R3-S4; * 22.2 versions prior to 22.2R3-S2; * 22.3 versions prior to 22.3R2-S2, 22.3R3-S1; * 22.4 versions prior to 22.4R2-S1, 22.4R3; * 23.2 versions prior to 23.2R1-S1, 23.2R2.
CVSS Scores
CVSS v3.1
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
SSVC Information
- Exploitation
- active
- Automatable
- Yes
- Technical Impact
- total
References
Known Exploited Vulnerability Information
Source | Added Date |
---|---|
CISA | 2023-11-13 00:00:00 UTC |
Recent Mentions
Verizon 2025 DBIR: Tenable Research Collaboration Shines a Spotlight on CVE Remediation Trends
Source: Tenable Blog • Published: 2025-04-23 04:05:00 UTC
Scanner Integrations
Scanner | URL | Date Detected |
---|---|---|
Metasploit | https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/freebsd/http/junos_phprc_auto_prepend_file.rb | 2025-04-29 11:01:10 UTC |
Nuclei | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2023/CVE-2023-36845.yaml | 2025-04-26 00:00:00 UTC |
Potential Proof of Concepts
Warning: These PoCs have not been tested and could contain malware. Use at your own risk.
junos_phprc_auto_prepend_file
Type: metasploit • Created: Unknown
e11i0t4lders0n/CVE-2023-36845
Type: github • Created: 2024-02-18 15:37:58 UTC • Stars: 1
ifconfig-me/CVE-2023-36845
Type: github • Created: 2024-02-17 08:15:30 UTC • Stars: 0
ak1t4/CVE-2023-36845
Type: github • Created: 2024-02-13 20:59:34 UTC • Stars: 5
cyberh3als/CVE-2023-36845-POC
Type: github • Created: 2023-10-02 06:28:07 UTC • Stars: 2
zaenhaxor/CVE-2023-36845
Type: github • Created: 2023-09-29 03:11:37 UTC • Stars: 3
kljunowsky/CVE-2023-36845
Type: github • Created: 2023-09-26 17:56:55 UTC • Stars: 51