Forwarded from Taiwan Computer Network Crisis Management and Coordination Center: Cybersecurity Alert TWCERTCC-200-202604-00000007
[Description]
A critical cybersecurity vulnerability (CVE-2026-33785, CVSS: 8.8) exists in the CLI of Juniper Networks Junos OS MX series switches. This vulnerability allows verified low-privilege users to execute unauthorized high-privilege commands, potentially leading to unauthorized control of the device.
[Affected Platforms]
Junos OS MX series versions prior to 24.4R2-S3 (excluding 24.4R2-S3)
Junos OS MX series version 25.2R2
[Recommended Action]
Please update to Junos OS MX series versions 24.4R2-S3, 25.2R2, 25.4R1 (inclusive) or later.
[References]
1. https://www.twcert.org.tw/tw/cp-169-10827-3ed3c-1.html