peter bassill · operator
$ cve CVE-2026-21902 JSON

CVE-2026-21902

9.8
CRITICAL · CVSS 3.1 · EPSS 18% (pctl 97)

Patch early

EPSS 18% — above the 10% action threshold.

Description

An Incorrect Permission Assignment for Critical Resource vulnerability in the On-Box Anomaly detection framework of Juniper Networks Junos OS Evolved on PTX Series allows an unauthenticated, network-based attacker to execute code as root. The On-Box Anomaly detection framework should only be reachable by other internal processes over the internal routing instance, but not over an externally exposed port. With the ability to access and manipulate the service to execute code as root a remote attacker can take complete control of the device. Please note that this service is enabled by default as no specific configuration is required. This issue affects Junos OS Evolved on PTX Series: * 25.4 versions before 25.4R1-S1-EVO, 25.4R2-EVO. This issue does not affect Junos OS Evolved versions before 25.4R1-EVO. This issue does not affect Junos OS.

Scoring

CVSS9.8 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS18% — more likely to be exploited than 97% of all CVEs
WeaknessCWE-732
On CISA KEVno
Public exploitnone known
Published2026-02-25
Last modified2026-06-17

Affected (7)

VendorProduct
juniperjunos os evolved
juniperptx10001-36mr
juniperptx10002-36qdd
juniperptx10003
juniperptx10004
juniperptx10008
juniperptx10016

References

→ the Explorer  ·  watch your stack  ·  NVD