A Missing Authentication for Critical Function vulnerability in command processing of Juniper Networks Junos OS allows a privileged local attacker to gain access to Linux-based line cards as root.
This issue affects systems running Junos OS using Linux-based line cards. Affected line cards include:
* MPC7, MPC8, MPC9, MPC10, MPC11
* LC2101, LC2103
* LC480, LC4800, LC9600
* MX304 (built-in FPC)
* MX-SPC3
* SRX5K-SPC3
* EX9200-40XS
* FPC3-PTX-U2, FPC3-PTX-U3
* FPC3-SFF-PTX
* LC1101, LC1102, LC1104, LC1105
This issue affects Junos OS:
* all versions before 22.4R3-S8,
* from 23.2 before 23.2R2-S6,
* from 23.4 before 23.4R2-S6,
* from 24.2 before 24.2R2-S3,
* from 24.4 before 24.4R2,
* from 25.2 before 25.2R2.
References
| Link | Resource |
|---|---|
| https://github.com/orangecertcc/security-research/security/advisories/GHSA-fwhc-gh5m-v8fq | Third Party Advisory |
| https://kb.juniper.net/JSA107863 | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
No history.
Information
Published : 2026-04-08 19:24
Updated : 2026-08-26 16:52
NVD link : CVE-2025-30650
Mitre link : CVE-2025-30650
CVE.ORG link : CVE-2025-30650
JSON object : View
Products Affected
juniper
- mpc10
- lc2101
- junos
- lc480
- fpc3-sff-ptx
- lc4800
- mpc8e
- lc9600
- lc2103
- lc1102
- mx-spc3
- srx5k-spc3
- mx304
- ex9200
- lc1101
- mpc11
- lc1105
- fpc3-ptx-u2
- fpc3-ptx-u3
- mpc7e-10g
- mpc9e
- lc1104
CWE
CWE-306
Missing Authentication for Critical Function
