PT-2026-31369 · Juniper Networks · Srx5K-Spc3+21
Published
2026-04-08
·
Updated
2026-04-08
·
CVE-2025-30650
CVSS v3.1
6.7
Medium
| Vector | AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Juniper Networks Junos OS versions prior to 22.4R3-S8
Juniper Networks Junos OS versions 23.2 before 23.2R2-S6
Juniper Networks Junos OS versions 23.4 before 23.4R2-S6
Juniper Networks Junos OS versions 24.2 before 24.2R2-S3
Juniper Networks Junos OS versions 24.4 before 24.4R2
Juniper Networks Junos OS versions 25.2 before 25.2R2
Description
A Missing Authentication for Critical Function vulnerability exists in the command processing of Juniper Networks Junos OS. This allows a privileged local attacker to gain root access to line cards running Junos OS Evolved. Affected line cards include MPC7, MPC8, MPC9, MPC10, MPC11, LC2101, LC2103, LC480, LC4800, LC9600, MX304 (built-in FPC), MX-SPC3, SRX5K-SPC3, EX9200-40XS, FPC3-PTX-U2, FPC3-PTX-U3, FPC3-SFF-PTX, LC1101, LC1102, LC1104, and LC1105.
Recommendations
Update to Junos OS version 22.4R3-S8 or later.
Update to Junos OS version 23.2R2-S6 or later.
Update to Junos OS version 23.4R2-S6 or later.
Update to Junos OS version 24.2R2-S3 or later.
Update to Junos OS version 24.4R2 or later.
Update to Junos OS version 25.2R2 or later.
Fix
Missing Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ex9200-40Xs
Fpc3-Ptx-U2
Fpc3-Ptx-U3
Fpc3-Sff-Ptx
Junos
Lc1101
Lc1102
Lc1104
Lc1105
Lc2101
Lc2103
Lc480
Lc4800
Lc9600
Mpc10
Mpc11
Mpc7
Mpc8
Mpc9
Mx-Spc3
Mx304
Srx5K-Spc3