An improper authorization weakness in Juniper Networks Junos OS allows a local authenticated attacker to bypass regular security controls to access the Junos Device Manager (JDM) application and take control of the system. This issue affects: Juniper Networks Junos OS versions prior to 18.2R1, 18.2X75-D5.
The following software releases have been updated to resolve this specific issue: 18.2R1, 18.2X75-D5, and all subsequent releases.
There are no viable workarounds for this issue.
| Product | Vulnerable range | Fixed version | Advisory |
|---|---|---|---|
| Juniper Networks Junos OS | >=unspecified<18.2R1, 18.2X75-D5 | 18.2R1, 18.2X75-D5 | advisory ↗ |