Juniper Networks Junos OS Evolved Missing Authentication Vulnerability in PTX Series FPCs

Vulnerability

A vulnerability allowing missing authentication for critical functions has been identified in Juniper Networks Junos OS Evolved, specifically on PTX Series routers. This issue affects all versions prior to 21.2R3-S8-EVO, as well as certain 21.4-EVO, 22.2-EVO, 22.3-EVO, 22.4-EVO, and 23.2-EVO versions. The vulnerability allows a local, authenticated attacker with low privileges to gain unauthorized access to the Flexible PIC Concentrators (FPCs) installed in the device, potentially leading to a full compromise of the affected component.

Impact

Exploitation of this vulnerability could result in unauthorized access to FPCs, allowing a low-privileged user to act as a high-privileged user, with the potential for a complete compromise of the affected component.

Remediation

Users can upgrade to Junos OS Evolved versions 21.2R3-S8-EVO, 21.4R3-S7-EVO, 22.2R3-S4-EVO, 22.3R3-S3-EVO, 22.4R3-S2-EVO, 23.2R2-EVO, 23.4R1-EVO, or any subsequent release. For those on versions beyond End of Engineering or End of Life, consult Juniper's vulnerability fix release guidance.

Added: Apr 10, 2026, 12:26 AM
Updated: Apr 10, 2026, 12:26 AM

Vulnerability Rating

Custom Algorithm
spread
0.3
impact
2.5
exploitability
3.1
remediation
7.9
relevance
5.6
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.