CNNVD-202601-2570 Information

CNNVD ID

CNNVD-202601-2570

CVE-2025-52987

  • CNNVD Published: 2026-01-15

Description (Chinese)

Juniper Networks Paragon Automation是美国瞻博网络(Juniper Networks)公司的一款自动化运维平台。 Juniper Networks Paragon Automation 24.1.1之前版本存在安全漏洞,该漏洞源于Web门户未设置适当的X-Frame-Options和X-Content-Type HTTP标头,可能导致点击劫持攻击。

Description (English)

Juniper Networks Paragon Automation is an automated transport platform of Juniper Networks. The security loophole in the previous version of Juniper Networks Paragon Automation 24.1.1 arose from the failure of the Web portal to set up the appropriate X-Frame-Options and X-Content-Type HTTP header, which could lead to a hit on the hijacking attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

瞻博网络

Published

2026-01-15

Last Modified

2026-02-24

References

https://kb.juniper.net/JSA103145 https://supportportal.juniper.net/

Patch

https://www.juniper.net/

Share on: