Incorrect Permission Assignment in Juniper Networks DHCP Daemon Affecting Junos OS
CVE-2025-59961

6.8MEDIUM

Key Information:

Vendor
CVE Published:
15 January 2026

Badges

๐Ÿ‘พ Exploit Exists

What is CVE-2025-59961?

A vulnerability exists in the Juniper DHCP daemon (jdhcpd) of Juniper Networks' Junos OS and Junos OS Evolved, where a local low-privileged user can exploit incorrect permission assignments to write to the Unix socket responsible for managing the DHCP service. This misconfiguration allows unauthorized control over the DHCP server or relay, potentially leading to significant network disruptions or unauthorized access. Systems running affected versions of Junos OS and Junos OS Evolved are at risk and should be updated accordingly.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Junos OS 0 < 21.2R3-S10

Junos OS 21.4 < 21.4R3-S12

Junos OS 22.2 < 22.2*

References

CVSS V4

Score:
6.8
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • ๐Ÿ‘พ

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

.