logo

Reg story prompts fresh security bulletin, review of Juniper Networks' CVE process

ID: e184735a-3008-5db3-9f9d-ecc824fb4ce5

STIX ID: report--e184735a-3008-5db3-9f9d-ecc824fb4ce5

Feed Name: The Register (Security)

Threat Score
65/100

Date Published: 2024-01-30

Date Updated: 2026-04-26

Author: Connor Jones

...
...

Juniper Networks disclosed four vulnerabilities in the J‑Web component of Junos OS for SRX and EX Series (CVE-2024-21619, CVE-2023-36846, CVE-2024-21620, CVE-2023-36851), comprising three authentication flaws (CVSS ~5.3) and a high‑severity (8.8) cross‑site scripting issue that could enable code execution as an administrator; CISA issued an alert and Juniper apologized after failing to register separate CVEs promptly and altering its disclosure timing.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.