vulnerability
Juniper Junos OS: 2025-10 Security Bulletin: Junos OS: When a user with the name ftp or anonymous is configured unauthenticated filesystem access is allowed (JSA103167) (CVE-2025-59980)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 6 | (AV:N/AC:L/Au:N/C:P/I:P/A:N) | Oct 8, 2025 | Jan 27, 2026 | Jan 27, 2026 |
Severity
6
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:N)
Published
Oct 8, 2025
Added
Jan 27, 2026
Modified
Jan 27, 2026
Description
An Authentication Bypass by Primary Weakness in the FTP server of Juniper Networks Junos OS allows an unauthenticated, network-based attacker to get limited read-write access to files on the device.
Solution
juniper-junos-os-upgrade-latest
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.