Description
An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in Juniper Networks Junos OS Evolved allows an unauthenticated, network-based attacker to cause a limited information disclosure and availability impact to the device.


Due to a wrong initialization, a process which should only be able to communicate internally within the device can be reached over the network via an open port. This leads to a device being inadvertently exposed and increased CPU cycles spent processing ingress packets.

This issue affects Junos OS Evolved:


* all versions before 23.2R2-S7-EVO,
* 23.4 versions before 23.4R2-S8-EVO,
* 24.2 versions before 24.2R2-S5-EVO,
* 24.4 versions before 24.4R2-S4-EVO,
* 25.2 versions before 25.2R2-S1-EVO,
* 25.4 versions before 25.4R1-S2-EVO.
Published: 2026-07-09
Score: 6.9 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

An improper restriction of the communication channel exists in Juniper Networks Junos OS Evolved. A port that is meant to be used only internally is inadvertently left open, allowing an unauthenticated, network‑based attacker to reach a process that should not be exposed. This flaw enables limited information disclosure and causes excess CPU usage by processing inbound packets destined for the exposed port, which can degrade device availability. The vulnerability is classified as CWE‑923 and is identified as a moderate‑severity flaw with a CVSS score of 6.9.

Affected Systems

All Juniper Networks Junos OS Evolved devices running software prior to the following releases are affected: 23.2R2‑S7‑EVO, 23.4R2‑S8‑EVO, 24.2R2‑S5‑EVO, 24.4R2‑S4‑EVO, 25.2R2‑S1‑EVO, 25.4R1‑S2‑EVO.

Risk and Exploitability

The CVSS score indicates a moderate risk. EPSS score of < 1% suggests a very low exploitation probability, implying that while the vulnerability exists, the likelihood of being exploited in the wild is minimal. The flaw is not listed in CISA's KEV catalog. Because it allows unauthenticated access to a network‑outbound control‑plane port, an attacker could increase CPU load and potentially disrupt service. The primary attack vector is network‑based and requires no authentication, making it readily exploitable against exposed control‑plane ports.

Generated by OpenCVE AI on July 29, 2026 at 11:55 UTC.

Remediation

Vendor Solution

The following software releases have been updated to resolve this specific issue: Junos OS Evolved: 23.2R2-S7-EVO, 23.4R2-S8-EVO, 24.2R2-S5-EVO, 24.4R2-S4-EVO, 25.2R2-S1-EVO, 25.4R1-S2-EVO, 25.4R2-EVO, 26.2R1-EVO, and all subsequent releases.


Vendor Workaround

There are no known workarounds for this issue. Please ensure that your control plane protection only explicitly permits access to ports intended to be reachable and only from authorized endpoints. All other traffic destined to the control plane should be disallowed.


OpenCVE Recommended Actions

  • Apply the latest Junos OS Evolved release from the update list such as 23.2R2‑S7‑EVO or newer to eliminate the exposed port
  • Configure the device's control‑plane firewall to explicitly allow only ports intended for remote access and deny all other traffic to the control plane
  • Verify that any third‑party applications or services using the control plane are also whitelisted or removed, ensuring no unintended exposure remains

Generated by OpenCVE AI on July 29, 2026 at 11:55 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 10 Jul 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 09 Jul 2026 22:45:00 +0000

Type Values Removed Values Added
First Time appeared Juniper Networks
Juniper Networks junos Os Evolved
Vendors & Products Juniper Networks
Juniper Networks junos Os Evolved

Thu, 09 Jul 2026 21:45:00 +0000

Type Values Removed Values Added
Description An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in Juniper Networks Junos OS Evolved allows an unauthenticated, network-based attacker to cause a limited information disclosure and availability impact to the device. Due to a wrong initialization, a process which should only be able to communicate internally within the device can be reached over the network via an open port. This leads to a device being inadvertently exposed and increased CPU cycles spent processing ingress packets. This issue affects Junos OS Evolved: * all versions before 23.2R2-S7-EVO, * 23.4 versions before 23.4R2-S8-EVO, * 24.2 versions before 24.2R2-S5-EVO, * 24.4 versions before 24.4R2-S4-EVO, * 25.2 versions before 25.2R2-S1-EVO, * 25.4 versions before 25.4R1-S2-EVO.
Title Junos OS Evolved: A port which has been inadvertently exposed can be reached by an attacker
Weaknesses CWE-923
References
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L'}

cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:L/SC:N/SI:N/SA:N/AU:Y/R:U/RE:M'}


Subscriptions

Juniper Networks Junos Os Evolved
cve-icon MITRE

Status: PUBLISHED

Assigner: juniper

Published:

Updated: 2026-07-10T13:30:26.315Z

Reserved: 2026-03-23T19:46:13.674Z

Link: CVE-2026-33803

cve-icon Vulnrichment

Updated: 2026-07-10T13:30:20.866Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-29T12:00:12Z

Weaknesses
  • CWE-923

    Improper Restriction of Communication Channel to Intended Endpoints