Reg story prompts fresh security bulletin, review of Juniper Networks' CVE process
ID: e184735a-3008-5db3-9f9d-ecc824fb4ce5
STIX ID: report--e184735a-3008-5db3-9f9d-ecc824fb4ce5
Feed Name: The Register (Security)
Threat Score
Juniper Networks disclosed four vulnerabilities in the J‑Web component of Junos OS for SRX and EX Series (CVE-2024-21619, CVE-2023-36846, CVE-2024-21620, CVE-2023-36851), comprising three authentication flaws (CVSS ~5.3) and a high‑severity (8.8) cross‑site scripting issue that could enable code execution as an administrator; CISA issued an alert and Juniper apologized after failing to register separate CVEs promptly and altering its disclosure timing.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
