Critical Flaw in Juniper PTX Routers: Unauthenticated Root Access Discovered
ID: b0e8af75-9036-5b05-81a5-788c7c7d71bd
STIX ID: report--b0e8af75-9036-5b05-81a5-788c7c7d71bd
Feed Name: securityonline.info
Threat Score
Juniper has issued an out-of-cycle security bulletin for CVE-2026-21902 — a critical CVSS 9.8 unauthenticated remote code execution flaw in the On-Box Anomaly detection framework on Junos OS Evolved PTX Series routers that is enabled by default; administrators should immediately upgrade to fixed versions (25.4R1-S1-EVO or later) or apply mitigations (restrict access via filters or run 'request pfe anomalies disable') while Juniper reports no known exploitation to date.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
