<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 17:34:34 +0000</lastBuildDate>
    <item>
      <title>certfr-2026-avi-0408 — De multiples vulnérabilités ont été découvertes dans les produits Juniper Networks. Certaines d'entre elles permettent…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0408</link>
      <description>certfr-2026-avi-0408</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0408</guid>
    </item>
    <item>
      <title>EUVD-2026-292506</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-292506</link>
      <description>EUVD-2026-292506</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-292506</guid>
    </item>
    <item>
      <title>fkie_cve-2026-33791</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-33791</link>
      <description>&lt;p&gt;An OS Command Injection vulnerability in the CLI processing of Juniper Networks Junos OS and Junos OS Evolved allows a local, high-privileged attacker executing specific, crafted CLI commands to inject arbitrary shell commands as root, leading to a complete compromise of the system.&lt;/p&gt;
&lt;p&gt;Certain &amp;#39;set system&amp;#39; commands, when executed with crafted arguments, are not properly sanitized, allowing for arbitrary shell injection. These shell commands are executed as root, potentially allowing for complete control of the vulnerable system.
This issue affects:&lt;/p&gt;
&lt;p&gt;Junos OS:&lt;/p&gt;
&lt;p&gt;*  all versions before 22.4R3-S8, 
  *  from 23.2 before 23.2R2-S5, 
  *  from 23.4 before 23.4R2-S7, 
  *  from 24.2 before 24.2R2-S2, 
  *  from 24.4 before 24.4R2, 
  *  from 25.2 before 25.2R2;&lt;/p&gt;
&lt;p&gt;Junos OS Evolved:&lt;/p&gt;
&lt;p&gt;*  all versions before 22.4R3-S8-EVO, 
  *  from 23.2 before 23.2R2-S5-EVO, 
  *  from 23.4 before 23.4R2-S7-EVO, 
  *  from 24.2 before 24.2R2-S2-EVO, 
  *  from 24.4 before 24.4R2-EVO, 
  *  from 25.2 before 25.2R1-S1-EVO, 25.2R2-EVO.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An OS Command Injection vulnerability in the CLI processing of Juniper Networks Junos OS and Junos OS Evolved allows a local, high-privileged attacker executing specific, crafted CLI commands to inject arbitrary shell commands as root, leading to a complete compromise of the system.&lt;/p&gt;
&lt;p&gt;Certain &amp;#39;set system&amp;#39; commands, when executed with crafted arguments, are not properly sanitized, allowing for arbitrary shell injection. These shell commands are executed as root, potentially allowing for complete control of the vulnerable system.
This issue affects:&lt;/p&gt;
&lt;p&gt;Junos OS:&lt;/p&gt;
&lt;p&gt;*  all versions before 22.4R3-S8, 
  *  from 23.2 before 23.2R2-S5, 
  *  from 23.4 before 23.4R2-S7, 
  *  from 24.2 before 24.2R2-S2, 
  *  from 24.4 before 24.4R2, 
  *  from 25.2 before 25.2R2;&lt;/p&gt;
&lt;p&gt;Junos OS Evolved:&lt;/p&gt;
&lt;p&gt;*  all versions before 22.4R3-S8-EVO, 
  *  from 23.2 before 23.2R2-S5-EVO, 
  *  from 23.4 before 23.4R2-S7-EVO, 
  *  from 24.2 before 24.2R2-S2-EVO, 
  *  from 24.4 before 24.4R2-EVO, 
  *  from 25.2 before 25.2R1-S1-EVO, 25.2R2-EVO.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-33791</guid>
    </item>
    <item>
      <title>GHSA-j4rr-c2v3-296r</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-j4rr-c2v3-296r</link>
      <description>&lt;p&gt;An OS Command Injection vulnerability in the CLI processing of Juniper Networks Junos OS and Junos OS Evolved allows a local, high-privileged attacker executing specific, crafted CLI commands to inject arbitrary shell commands as root, leading to a complete compromise of the system.&lt;/p&gt;
&lt;p&gt;Certain &amp;#39;set system&amp;#39; commands, when executed with crafted arguments, are not properly sanitized, allowing for arbitrary shell injection. These shell commands are executed as root, potentially allowing for complete control of the vulnerable system.
This issue affects:&lt;/p&gt;
&lt;p&gt;Junos OS:&lt;/p&gt;
&lt;p&gt;*  all versions before 22.4R3-S8, 
  *  from 23.2 before 23.2R2-S5, 
  *  from 23.4 before 23.4R2-S7, 
  *  from 24.2 before 24.2R2-S2, 
  *  from 24.4 before 24.4R2, 
  *  from 25.2 before 25.2R2;&lt;/p&gt;
&lt;p&gt;Junos OS Evolved:&lt;/p&gt;
&lt;p&gt;*  all versions before 22.4R3-S8-EVO, 
  *  from 23.2 before 23.2R2-S5-EVO, 
  *  from 23.4 before 23.4R2-S7-EVO, 
  *  from 24.2 before 24.2R2-S2-EVO, 
  *  from 24.4 before 24.4R2-EVO, 
  *  from 25.2 before 25.2R1-S1-EVO, 25.2R2-EVO.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An OS Command Injection vulnerability in the CLI processing of Juniper Networks Junos OS and Junos OS Evolved allows a local, high-privileged attacker executing specific, crafted CLI commands to inject arbitrary shell commands as root, leading to a complete compromise of the system.&lt;/p&gt;
&lt;p&gt;Certain &amp;#39;set system&amp;#39; commands, when executed with crafted arguments, are not properly sanitized, allowing for arbitrary shell injection. These shell commands are executed as root, potentially allowing for complete control of the vulnerable system.
This issue affects:&lt;/p&gt;
&lt;p&gt;Junos OS:&lt;/p&gt;
&lt;p&gt;*  all versions before 22.4R3-S8, 
  *  from 23.2 before 23.2R2-S5, 
  *  from 23.4 before 23.4R2-S7, 
  *  from 24.2 before 24.2R2-S2, 
  *  from 24.4 before 24.4R2, 
  *  from 25.2 before 25.2R2;&lt;/p&gt;
&lt;p&gt;Junos OS Evolved:&lt;/p&gt;
&lt;p&gt;*  all versions before 22.4R3-S8-EVO, 
  *  from 23.2 before 23.2R2-S5-EVO, 
  *  from 23.4 before 23.4R2-S7-EVO, 
  *  from 24.2 before 24.2R2-S2-EVO, 
  *  from 24.4 before 24.4R2-EVO, 
  *  from 25.2 before 25.2R1-S1-EVO, 25.2R2-EVO.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-j4rr-c2v3-296r</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-1022 — Juniper Patchday April 2026: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1022</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Juniper Apstra, Junos OS, Junos OS Evolved und Junos Space ausnutzen, um erweiterte Berechtigungen – sogar Root-Rechte – zu erlangen, beliebigen Code auszuführen – auch mit erweiterten Berechtigungen –, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, Cross-Site-Scripting-Angriffe durchzuführen oder Daten zu manipulieren.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Juniper Apstra, Junos OS, Junos OS Evolved und Junos Space ausnutzen, um erweiterte Berechtigungen – sogar Root-Rechte – zu erlangen, beliebigen Code auszuführen – auch mit erweiterten Berechtigungen –, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, Cross-Site-Scripting-Angriffe durchzuführen oder Daten zu manipulieren.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1022</guid>
    </item>
  </channel>
</rss>
