Missing origin validation in websockets in Junos OS Evolved - CVE-2023-44190
Published: October 17, 2023
Junos OS Evolved
Juniper Networks, Inc.
Description
The vulnerability allows a remote attacker to bypass implemented security restrictions.
The vulnerability exists due to origin validation error in MAC address validation. A remote attacker on the local network can bypass MAC address checking and gain unauthorized access to network resources.
Remediation
Install updates from vendor's website for the following devices: PTX10001, PTX10004, PTX10008, and PTX10016.