10 of 10: Juniper Networks fixes a highly critical bug
- July 1, 2024
- 0
Juniper Networks is rolling out updates for some smart routers. The key is to install them quickly, as the updates close large and serious leaks. Juniper Networks routers
Juniper Networks is rolling out updates for some smart routers. The key is to install them quickly, as the updates close large and serious leaks. Juniper Networks routers
Juniper Networks is rolling out updates for some smart routers. The key is to install them quickly, as the updates close large and serious leaks.
Juniper Networks routers have been affected by a critical leak. The CVE-2024-2973 bug receives a score of ten out of ten on both CVSS 3.1 and CVSS 4. This exceptional score highlights how critical the vulnerability is.
The leak affects routers that are set up in a high availability configuration. It allows attackers on the network to completely bypass authentication and thus gain full control over the devices. The following devices and firmware are vulnerable, according to Juniper:
Session Smart Router:
Smart Conductor of the session:
WAN Assurance Router:
Juniper says it is not aware of any active abuse to date. However, the flaw can be a powerful tool for attackers who can use the routers to gain extensive control over the network.
Users should upgrade to firmware SSR-5.6.15, SSR-6.1.9-lts, SSR-6.2.5-sts or later as soon as possible. For MIST-managed WAN Assurance routers connected to the MIST cloud, Juniper has already automatically applied the patch.
Source: IT Daily
As an experienced journalist and author, Mary has been reporting on the latest news and trends for over 5 years. With a passion for uncovering the stories behind the headlines, Mary has earned a reputation as a trusted voice in the world of journalism. Her writing style is insightful, engaging and thought-provoking, as she takes a deep dive into the most pressing issues of our time.