CVE-2025-30661

Severity
8.5HIGH
EPSS
0.0%
top 95.11%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 11

Description

An Incorrect Permission Assignment for Critical Resource vulnerability in line card script processing of Juniper Networks Junos OS allows a local, low-privileged user to install scripts to be executed as root, leading to privilege escalation. A local user with access to the local file system can copy a script to the router in a way that will be executed as root, as the system boots. Execution of the script as root can lead to privilege escalation, potentially providing the adversary complete co

CVSS vector

CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Affected Packages2 packages

CVEListV5juniper_networks/junos_os23.223.2R2-S4+3
NVDjuniper/junos4 versions+3

🔴Vulnerability Details

1
CVEList
Junos OS: Low-privileged user can cause script to run as root, leading to privilege escalation2025-07-11

📋Vendor Advisories

1
Juniper
CVE-2025-30661: An Incorrect Permission Assignment for Critical Resource vulnerability in line card script processing of Juniper Networks Junos OS allows a local, low2025-07-11
CVE-2025-30661 (HIGH CVSS 8.5) | An Incorrect Permission Assignment | cvebase.io