CVE-2024-47498

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Oct 11, 2024
Updated: Oct 15, 2024
CWE ID 404

Summary

CVE-2024-47498 is a Denial-of-Service (DoS) vulnerability affecting the CLI of Juniper Networks Junos OS Evolved on QFX5000 Series. An unauthenticated, adjacent attacker can exploit this Unimplemented or Unsupported Feature in UI vulnerability by overloading the control plane with incorrect configuration statements related to MAC learning and moves. This issue, which can lead to control plane overload situations, impacts the device's ability to process legitimate traffic. Affected versions include all before 21.4R3-S8-EVO, 22.2-EVO versions before 22.2R3-S5-EVO, 22.4-EVO versions before 22.4R3-EVO, and 23.2-EVO versions before 23.2R2-EVO. Users are advised to update their systems as soon as possible to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share