#VU52307 Improper Check for Unusual or Exceptional Conditions in Junos OS Evolved - CVE-2021-0225 

 

#VU52307 Improper Check for Unusual or Exceptional Conditions in Junos OS Evolved - CVE-2021-0225

Published: April 16, 2021


Vulnerability identifier: #VU52307
Vulnerability risk: Medium
CVSSv4.0: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:U/U:Green
CVE-ID: CVE-2021-0225
CWE-ID: CWE-754
Exploitation vector: Remote access
Exploit availability: No public exploit available
Vulnerable software:
Junos OS Evolved
Software vendor:
Juniper Networks, Inc.

Description

The vulnerability allows a remote attacker to compromise the target system.

The vulnerability exists due to the stateless IP firewall filter does not work as expected. A remote attacker can cause the stateless firewall filter configuration which uses the action "policer" in certain combinations with other options to not take effect.


Remediation

Install updates from vendor's website.

External links