Junos OS, owned by Juniper Networks, has been discovered to have multiple vulnerabilities related to denial of service (DoS), path traversal, and cross-site scripting (XSS).
See also: Over 92,000 D-Link NAS devices have a backdoor

The CVEs for these vulnerabilities have been assigned as CVE-2024-30409, CVE-2020-1606, and CVE-2020-1607.
The severity for these vulnerabilities ranges from 5.3 (Medium) to 7.5 (High). However, these bugs have been patched by Juniper Networks and related security advisories have been published to address them.
According to the advisory released, the DoS was detected due to higher CPU in the routing engine, route traversal, and cross-site scripting vulnerabilities present in the J-Web Interface and Junos OS.
These vulnerabilities affect multiple Juniper Networks products and releases
The CVE-2024-30409exists in many versions of Juniper Networks' Junos OS and JunosOS that evolved due to improper checking for unusual or exceptional conditions in telemetry processing.
This vulnerability allows an attacker relying on network authentication to cause a denial of service condition by crashing the base telemetry daemon (fibtd).
The severity rating for this vulnerability was given as 5.3 (Medium) according to the CVSS v3 and 6.9 (Medium) according to the CVSS v4.
No workarounds have been reported to mitigate this vulnerability.
See also: T-Mobile: System error exposed customer data
The CVE-2020-1606 exists in Juniper Networks' Junos OS devices, which could allow an authenticated attacker with J-web user privilege to read or delete files with "worldwide" read permissions.

However, without root, this vulnerability cannot have much impact on system files.
As a workaround, users of affected versions of Junos OS can restrict access to the J-web interface to only trusted users to reduce the risk of exploitation.
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
The CVE-2020-1607 in Juniper Networks' operating system exists due to inadequate XSS protection in the J-web interface, which could allow a threat actor to inject web script or HTML. This script injection could potentially lead to a compromise of the user's or administrator's J-Web session, which could be used to perform administrative actions on the Junos OS under the permission of the targeted user.
As a workaround for this vulnerability, users can be configured to only access the J-web service from trusted sources, such as jumphost without internet. Alternatively, the J-web interface can also be disabled.
Users of these Juniper Networks Junos OS and Junos OS Advanced products are advised to upgrade to the latest versions to prevent threat actors from exploiting these vulnerabilities.
See also: Wyze camera users saw other people's homes due to a bug
What are the main tactics for protecting against DoS attacks?
One of the most effective ways to protect is to implement intrusion detection and intrusion prevention systems (IDS/IPS). These systems monitor network traffic for unusual patterns or suspicious behavior. Also, the use of network threat management systems (NTMS) can help detect DoS attacks in real time, allowing network administrators to react quickly. Implementing updated security rules and policies is another protection tactic. This includes ensuring that all systems and applications are up to date with the latest security patches. Finally, the use of DoS avoidance (DOS) systems can be extremely useful. These systems are designed to identify and repel DoS attacks, maintaining network performance and accessibility.
Source: cybersecuritynews
