cbcvebase.
CVE-2021-0266
published 2021-04-22

CVE-2021-0266: The use of multiple hard-coded cryptographic keys in cSRX Series software in Juniper Networks Junos OS allows an attacker to take control of any instance of a…

critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
The use of multiple hard-coded cryptographic keys in cSRX Series software in Juniper Networks Junos OS allows an attacker to take control of any instance of a cSRX deployment through device management services. This issue affects: Juniper Networks Junos OS on cSRX Series: All versions prior to 20.2R3; 20.3 versions prior to 20.3R2; 20.4 versions prior to 20.4R2.

Affected

8 ranges
VendorProductVersion rangeFixed in
juniperjunos
juniperjunos
juniperjunos
juniperjunos_os
junipersrx_series
juniper_networksjunos_os>= 20.3 < 20.3R220.3R2
juniper_networksjunos_os>= 20.4 < 20.4R220.4R2
juniper_networksjunos_os>= unspecified < 20.2R320.2R3