PT-2026-56982 · Juniper Networks · Junos Evolved
CVE-2026-57028
·
Published
2026-07-09
·
Updated
2026-07-10
CVSS v3.1
7.3
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
Junos OS Evolved versions prior to 23.2R2-EVO
Description
An improper restriction of communication channel to intended endpoints allows an unauthenticated, network-based attacker to cause license exhaustion. Due to incorrect initialization, a process intended for internal communication within the device is accessible over the network via an open port, leading to unauthorized access to license management.
Recommendations
Update Junos OS Evolved to version 23.2R2-EVO or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Junos Evolved