CVE-2025-21589 | Juniper Session Smart Router up to 5.6.16/6.0.7/6.3.3-r1 authentication bypass (WID-SEC-2025-0393)
A vulnerability classified as critical has been found in Juniper Session Smart Router, Session Smart Conductor and WAN Assurance Managed Router up to 5.6.16/6.0.7/6.3.3-r1. Impacted is an unknown function. The manipulation leads to authentication bypass using alternate channel.
This vulnerability is traded as CVE-2025-21589. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.