轉發 台灣電腦網路危機處理暨協調中心 資安訊息警訊 TWCERTCC-200-202604-00000009
[內容說明]
Juniper Networks CTP OS 存在重大資安漏洞(CVE-2026-33771,CVSS 4.x:9.1),此為弱密碼要求漏洞,可能允許未經身分驗證的網路攻擊者,利用本機帳號的弱密碼取得設備控制權。
[影響平台]
Juniper Networks CTP OS 9.2R1和9.2R2版本
[建議措施]
請更新至Juniper Networks CTP OS 9.3R1(含)之後版本
[參考資料]
1. https://www.twcert.org.tw/tw/cp-169-10829-d8f35-1.html
Forwarded from Taiwan Computer Network Crisis Management and Coordination Center: Cybersecurity Alert TWCERTCC-200-202604-00000009
[Content Description]
A critical cybersecurity vulnerability exists in Juniper Networks CTP OS (CVE-2026-33771, CVSS 4.x: 9.1). This is a weak password requirement vulnerability that could allow unauthenticated network attackers to gain control of the device using weak passwords for local accounts.
[Affected Platforms]
Juniper Networks CTP OS versions 9.2R1 and 9.2R2
[Recommended Actions]
Please update to Juniper Networks CTP OS version 9.3R1 or later.
[References]
1. https://www.twcert.org.tw/tw/cp-169-10829-d8f35-1.html