π CVE
HIGH
CVSS: 7.8
β’
April 09, 2026
An Execution with Unnecessary Privileges vulnerabilityΒ in the User Interface (UI) of Juniper Networks Junos OS and Junos OS Evolved allows a local, low-privileged attacker to gain root privileges, thus compromising the system.
When aΒ configuration that allows unsigned python op scripts is present on the device, a non-root user is able to execute malicious op scripts as a root-equivalent user, leading to privilege escalation.Β
This issue affects Junos OS:Β
* All versions before 22.4R3-S7,Β
* from 23.2 before 23.2R2-S4,Β
* from 23.4 beforeΒ 23.4R2-S6,
* from 24.2 before 24.2R1-S2, 24.2R2,Β
* from 24.4 before 24.4R1-S2, 24.4R2;Β
Junos OS Evolved:Β
* All versions before 22.4R3-S7-EVO,Β
* from 23.2 before 23.2R2-S4-EVO,Β
* from 23.4 beforeΒ 23.4R2-S6-EVO,
* from 24.2 before 24.2R2-EVO,Β
* from 24.4 before 24.4R1-S1-EVO, 24.4R2-EVO.