Source |
The Hacker News |
Identifiant |
8648854 |
Date de publication |
2025-02-18 17:48:00 (vue: 2025-02-18 13:08:07) |
Titre |
Juniper Session Smart Routers Vulnerability Could Let Attackers Bypass Authentication |
Texte |
Juniper Networks has released security updates to address a critical security flaw impacting Session Smart Router, Session Smart Conductor, and WAN Assurance Router products that could be exploited to hijack control of susceptible devices.
Tracked as CVE-2025-21589, the vulnerability carries a CVSS v3.1 score of 9.8 and a CVS v4 score of 9.3.
"An Authentication Bypass Using an Alternate Path or
Juniper Networks has released security updates to address a critical security flaw impacting Session Smart Router, Session Smart Conductor, and WAN Assurance Router products that could be exploited to hijack control of susceptible devices.
Tracked as CVE-2025-21589, the vulnerability carries a CVSS v3.1 score of 9.8 and a CVS v4 score of 9.3.
"An Authentication Bypass Using an Alternate Path or |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
2025 21589 address alternate assurance attackers authentication bypass carries conductor control could critical cve cvs cvss devices exploited flaw has hijack impacting juniper let networks path products released router routers score security session smart susceptible tracked updates using vulnerability wan |
Tags |
Vulnerability
|
Stories |
|
Move |
|