PT-2025-41440 · Juniper Networks · Junos Evolved

Published

2025-10-09

·

Updated

2025-10-09

·

CVE-2025-60006

CVSS v3.1

5.3

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Juniper Networks Junos OS Evolved versions 24.2 through 24.2R2-S2-EVO Juniper Networks Junos OS Evolved versions 24.4 through 24.4R2-EVO
Description An issue exists in the CLI of Juniper Networks Junos OS Evolved that could allow an attacker to elevate privileges and/or execute unauthorized commands. Specifically, crafted CLI commands processed by scripts lack proper hardening, potentially leading to the execution of injected commands via the shell. This could allow an attacker to perform operations beyond their assigned permissions.
Recommendations Update Juniper Networks Junos OS Evolved to version 24.2R2-S2-EVO or later. Update Juniper Networks Junos OS Evolved to version 24.4R2-EVO or later.

Fix

OS Command Injection

Weakness Enumeration

Related Identifiers

CVE-2025-60006

Affected Products

Junos Evolved