@UKTechHub
.
.

Juniper Networks release emergency patches for perfect 10 router vuln Reported by https://www.theregister.com A critical vulnerability affecting Juniper Networks routers forced the vendor to issue emergency patches last week, and users are advised to apply them as soon as possible….

UKTH forums ๐Ÿ“ก Broadband Tech & ISPโ€™s Other Stuff etc. Juniper Networks release emergency patches for perfect 10 router vuln Reported by https://www.theregister.com A critical vulnerability affecting Juniper Networks routers forced the vendor to issue emergency patches last week, and users are advised to apply them as soon as possible....

Viewing 1 post (of 1 total)
  • Author
    Posts
  • #32728
    UK SentinelUK Sentinel
    Keymaster
    • Replies 8,353
    • The Skipper

    Reported by https://www.theregister.com

    A critical vulnerability affecting Juniper Networks routers forced the vendor to issue emergency patches last week, and users are advised to apply them as soon as possible.

    The authentication bypass bug, tracked as CVE-2024-2973, scored a perfect 10 rating on both the CVSS 3.1 and CVSS 4 systems, illustrating the seriousness of the issue.

    “An authentication bypass using an alternate path or channel vulnerability in Juniper Networks Session Smart Router or Conductor running with a redundant peer allows a network-based attacker to bypass authentication and take full control of the device,” Juniper said in itsย advisory.

    The bug impacts Juniper’s Smart Session Router, Session Smart Conductor management platform, and WAN Assurance Routers and only those that run high-availability redundant configurations are vulnerable.

    As for the specific vulnerable versions, forย Session Smart Routersย it’s:

    • All versions before 5.6.15
    • From 6.0 before 6.1.9-lts
    • From 6.2 before 6.2.5-sts

    Forย Session Smart Conductor:

    • All versions before 5.6.15
    • From 6.0 before 6.1.9-lts
    • From 6.2 before 6.2.5-sts

    And forย WAN Assurance Routers:

    • 6.0 versions before 6.1.9-lts
    • 6.2 versions before 6.2.5-sts
    Share the knowledge

    In a completely sane world, madness is the only freedom (J.G.Ballard).

Viewing 1 post (of 1 total)
  • You must be logged in to reply to this topic.
Latest Posts
Close โœ–

Search forums

Advanced forum search

Back to basic search