{
  "crds_version": "0.1",
  "kind": "base",
  "id": "crds:cve-2023-36844",
  "revision": 1,
  "title": "Juniper Junos EX — Variable Modification in J-Web",
  "summary": "The web interface of Juniper's switches lets an unauthenticated caller set important environment variables of the scripting engine (PHP) behind it, which attackers chained into running code on the device.",
  "source_type": "cve",
  "severity": "medium",
  "cvss": {
    "score": 5.3,
    "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N",
    "version": "3.1"
  },
  "epss": 0.91357,
  "exploitation": {
    "known_exploited": true,
    "exploit_available": true,
    "attack_complexity": "low",
    "kev_added": "2023-11-13",
    "prerequisites": "Network access to the device web interface"
  },
  "remediation": {
    "patch_available": true
  },
  "mitre_attack": [
    "T1190"
  ],
  "kill_chain": "initial_access",
  "recommended_action": "Apply Juniper's fix for the affected Junos releases, and take the web interface off untrusted networks.",
  "confidence": "medium",
  "provenance": [
    {
      "fields": [
        "cvss",
        "exploitation.attack_complexity",
        "exploitation.exploit_available",
        "references",
        "published_at"
      ],
      "source": "https://nvd.nist.gov/vuln/detail/CVE-2023-36844",
      "retrieved_at": "2026-08-07T16:15:34.205Z",
      "confidence": "high",
      "extractor": "scrty-crds-pipeline/0.1"
    },
    {
      "fields": [
        "exploitation.known_exploited",
        "exploitation.kev_added"
      ],
      "source": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog",
      "retrieved_at": "2026-08-07T16:15:34.205Z",
      "confidence": "high",
      "extractor": "scrty-crds-pipeline/0.1"
    },
    {
      "fields": [
        "epss"
      ],
      "source": "https://api.first.org/data/v1/epss?cve=CVE-2023-36844",
      "retrieved_at": "2026-08-07T16:15:34.205Z",
      "confidence": "high",
      "extractor": "scrty-crds-pipeline/0.1"
    },
    {
      "fields": [
        "title",
        "summary",
        "severity",
        "remediation",
        "mitre_attack",
        "kill_chain",
        "recommended_action",
        "confidence",
        "tags",
        "exploitation.prerequisites"
      ],
      "source": "https://nvd.nist.gov/vuln/detail/CVE-2023-36844",
      "retrieved_at": "2026-08-07T16:15:34.205Z",
      "confidence": "high",
      "extractor": "claude-code"
    }
  ],
  "references": [
    {
      "type": "cve",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36844",
      "label": "NVD record"
    },
    {
      "type": "cisa",
      "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog",
      "label": "CISA Known Exploited Vulnerabilities catalog"
    },
    {
      "type": "vendor_advisory",
      "url": "https://supportportal.juniper.net/JSA72300"
    },
    {
      "type": "exploit",
      "url": "http://packetstormsecurity.com/files/174865/Juniper-SRX-Firewall-EX-Switch-Remote-Code-Execution.html"
    }
  ],
  "published_at": "2023-08-17T20:15:10.267Z",
  "issued_at": "2026-08-07T16:15:34.205Z",
  "tags": [
    "juniper",
    "junos",
    "network-device"
  ]
}
