logo

Juniper Networks Default Password Vulnerability Let Attacker Take Full Control of the Device

ID: fcdb5b3a-c5d4-55a2-9590-a2e24ad809d0

STIX ID: report--fcdb5b3a-c5d4-55a2-9590-a2e24ad809d0

Feed Name: cybersecurityNews.com

Threat Score
78/100

Date Published: 2026-04-10

Date Updated: 2026-05-05

Author: Abinaya

...
...

A critical vulnerability (CVE-2026-33784, CVSS v3.1 9.8) in Juniper Support Insights vLWC appliances stems from a shipped, publicly known default administrator password and failure to enforce an initial password reset, allowing unauthenticated remote actors to obtain full administrative control. Juniper SIRT discovered the issue internally; administrators are urged to upgrade to vLWC 3.0.94 or later and immediately change default credentials if patching is delayed.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.