Site icon TheCyberThrone

Juniper released out-of-band updates to patch high severity flaws

Advertisements

Juniper has released out-of-band updates to address high-severity flaws in SRX Series and EX Series that could be exploited by a threat actor to take control of susceptible systems.

The vulnerabilities, tracked as CVE-2024-21619 and CVE-2024-21620, are rooted in the J-Web component and impact all versions of Junos OS.

Advertisements

The first vulnerability is CVE-2024-21619 with a CVSS score. 5.3 is a missing authentication vulnerability that could lead to exposure to sensitive configuration information

The second vulnerability is CVE-2024-21620 with a CVSS score: 8.8 is a cross-site scripting (XSS) vulnerability that could lead to the execution of arbitrary commands with target’s permissions by means of a crafted request

Bith the vulnerabilities have been addressed in the following versions –

Exit mobile version