Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2025-52951 | First vendor Publication | 2025-07-11 |
Vendor | Cve | Last vendor Modification | 2025-07-11 |
Security-Database Scoring CVSS v3
Cvss vector : CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N | |||
---|---|---|---|
Overall CVSS Score | 5.8 | ||
Base Score | 5.8 | Environmental Score | 5.8 |
impact SubScore | 1.4 | Temporal Score | 5.8 |
Exploitabality Sub Score | 3.9 | ||
Attack Vector | Network | Attack Complexity | Low |
Privileges Required | None | User Interaction | None |
Scope | Changed | Confidentiality Impact | None |
Integrity Impact | Low | Availability Impact | None |
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : | |||
---|---|---|---|
Cvss Base Score | N/A | Attack Range | N/A |
Cvss Impact Score | N/A | Attack Complexity | N/A |
Cvss Expoit Score | N/A | Authentication | N/A |
Calculate full CVSS 2.0 Vectors scores |
Detail
A Protection Mechanism Failure vulnerability in kernel filter processing of Juniper Networks Junos OS allows an attacker sending IPv6 traffic to an interface to effectively bypass any firewall filtering configured on the interface. Due to an issue with Junos OS kernel filter processing, the 'payload-protocol' match is not being supported, causing any term containing it to accept all packets without taking any other action. In essence, these firewall filter terms were being processed as an 'accept' for all traffic on the interface. This issue affects Junos OS: * all versions before 21.2R3-S9, This is a more complete fix for previously published CVE-2024-21607 (JSA75748). |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-52951 |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
100 % | CWE-693 | Protection Mechanism Failure |
Sources (Detail)
Source | Url |
---|
Alert History
Date | Informations |
---|---|
2025-07-11 21:20:37 |
|