Juniper Networks Junos Space
cpe:2.3:a:juniper:junos_space:*:*:*:*:*:*:*, +1 more
- < 24.1R5
A vulnerability in the TLS/SSL server of Juniper Networks Junos Space, present in all versions prior to 24.1R5, allows the use of static key ciphers. This reduces the confidentiality of on-path traffic and does not support Perfect Forward Secrecy, impacting the long-term confidentiality of encrypted communications.
The use of static key ciphers in the TLS/SSL server reduces the confidentiality of on-path traffic and long-term encrypted communications, as these ciphers do not support Perfect Forward Secrecy.
Users can upgrade to Junos Space version 24.1R5 or later to address this vulnerability. Ensure that any clients connecting to the device do not allow negotiation of static RSA key exchange.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.