logo

Critical Flaw in Juniper PTX Routers: Unauthenticated Root Access Discovered

ID: b0e8af75-9036-5b05-81a5-788c7c7d71bd

STIX ID: report--b0e8af75-9036-5b05-81a5-788c7c7d71bd

Feed Name: securityonline.info

Threat Score
80/100

Date Published: 2026-02-26

Date Updated: 2026-04-23

Author: Ddos

...
...

Juniper has issued an out-of-cycle security bulletin for CVE-2026-21902 — a critical CVSS 9.8 unauthenticated remote code execution flaw in the On-Box Anomaly detection framework on Junos OS Evolved PTX Series routers that is enabled by default; administrators should immediately upgrade to fixed versions (25.4R1-S1-EVO or later) or apply mitigations (restrict access via filters or run 'request pfe anomalies disable') while Juniper reports no known exploitation to date.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.