Home

Description

A Missing Authentication for Critical Function vulnerability in command processing of Juniper Networks Junos OS allows a privileged local attacker to gain access to Linux-based line cards as root. This issue affects systems running Junos OS using Linux-based line cards. Affected line cards include: * MPC7, MPC8, MPC9, MPC10, MPC11 * LC2101, LC2103 * LC480, LC4800, LC9600 * MX304 (built-in FPC) * MX-SPC3 * SRX5K-SPC3 * EX9200-40XS * FPC3-PTX-U2, FPC3-PTX-U3 * FPC3-SFF-PTX * LC1101, LC1102, LC1104, LC1105 This issue affects Junos OS: * all versions before 22.4R3-S8, * from 23.2 before 23.2R2-S6, * from 23.4 before 23.4R2-S6, * from 24.2 before 24.2R2-S3, * from 24.4 before 24.4R2, * from 25.2 before 25.2R2.

PUBLISHED Reserved 2025-03-24 | Published 2026-04-08 | Updated 2026-04-13 | Assigner juniper




MEDIUM: 6.7CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

HIGH: 8.4CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:L/AU:N/R:A/V:C/RE:M/U:Amber

Problem types

CWE-306 Missing Authentication for Critical Function

Product status

Default status
unaffected

Any version before 22.4R3-S8
affected

23.2 (semver) before 23.2R2-S6
affected

23.4 (semver) before 23.4R2-S6
affected

24.2 (semver) before 24.2R2-S3
affected

24.4 (semver) before 24.4R2
affected

25.2 (semver) before 25.2R2
affected

Timeline

2026-04-08:Initial Publication
2026-04-13:Removed reference to EVO. Issue is specific to Junos OS with Linux-based line cards.

Credits

Juniper SIRT would like to acknowledge and thank Pierre EMERIAUD & Orange CERT-CC from Orange group for responsibly reporting this vulnerability. finder

References

github.com/...search/security/advisories/GHSA-fwhc-gh5m-v8fq third-party-advisory

kb.juniper.net/JSA107863 vendor-advisory

cve.org (CVE-2025-30650)

nvd.nist.gov (CVE-2025-30650)

Download JSON