CyberRota Analysis
AI-GeneratedThe URL filtering plugin in Juniper Networks Junos OS on MX Series devices is vulnerable, allowing unauthenticated attackers to bypass configured web filtering and access restricted downstream resources. This could lead to unauthorized access to sensitive data or services that should be protected. Organizations using affected versions of Junos OS, particularly those relying on web filtering for security, should prioritize applying the necessary updates to mitigate this risk.
Original NVD Description
A Use of Incorrectly-Resolved Name or Reference vulnerability in the URL filtering plugin of Juniper Networks Junos OS on MX Series allows an unauthenticated, network-based attacker to bypass web filtering and access downstream resources that should be unreachable. If an MX Series device is configured with web filtering, and an attacker sends a request with a specifically formatted URL, this request will get forwarded despite the system being configured to block it. In turn, an attacker can access downstream resources that are expected to be unreachable. This issue affects Junos OS on MX Series: * all versions before 23.2R2-S7, * 23.4 versions before 23.4R2-S8, * 24.2 versions before 24.2R2-S5, * 24.4 versions before 24.4R2-S4, * 25.2 versions before 25.2R2-S1, * 25.4 versions before 25.4R1-S2, 25.4R2.
Related CVEs
Other vulnerabilities affecting the same vendor(s)