Juniper Networks Default Password Vulnerability Let Attacker Take Full Control of the Device
ID: fcdb5b3a-c5d4-55a2-9590-a2e24ad809d0
STIX ID: report--fcdb5b3a-c5d4-55a2-9590-a2e24ad809d0
Feed Name: cybersecurityNews.com
Threat Score
A critical vulnerability (CVE-2026-33784, CVSS v3.1 9.8) in Juniper Support Insights vLWC appliances stems from a shipped, publicly known default administrator password and failure to enforce an initial password reset, allowing unauthenticated remote actors to obtain full administrative control. Juniper SIRT discovered the issue internally; administrators are urged to upgrade to vLWC 3.0.94 or later and immediately change default credentials if patching is delayed.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
