Intelligence View
CVE-2023-28976 | Juniper Junos OS prior 22.1R2 on MX Packet Forwarding Engine unusual condition (JSA70601 / EUVD-2023-32594)
A vulnerability classified as critical has been found in Juniper Junos OS on MX. The impacted element is an unknown function of the component Packet Forwarding Engine. The manipulation leads to improper check for unusual conditions. This…
This vulnerability is documented as CVE-2023-28976. The attack can be initiated remotely. There is not any exploit available.
It is recommended to upgrade the affected component.
SOC Incident Playbook: Vulnerability Remediation & Verification
title: Detect Exploitation - CVE-2023-28976 | Juniper Junos OS prior 22.1R2 on MX Packet Forwarding Engine unusual condition (JSA70601 / EUVD-2023-32594)
id: 50a68787-1666-44b7-ba76-91fe2de88918
status: experimental
description: Automatisch generierte SIEM-Erkennungsregel basierend auf CTI Intelligence
references:
- https://tsecurity.de/
author: iShareStuff CTI Automated Detection Engine
date: 2026-09-24
logsource:
category: network_connection
product: any
detection:
selection:
CommandLine|contains:
- 'exploit'
condition: selection
falsepositives:
- Legitime administrative Zugriffe oder Penetrationstests
level: high
tags:
- attack.initial_accessrule CTI_Threat_Indicator {
meta:
author = "iShareStuff CTI Automated Detection Engine"
date = "2026-09-24"
description = "YARA Signature for "
strings:
$str = "CVE-2023-28976 | Juniper Junos" ascii wide
condition:
any of them
}
SOCIAL SHARE CARD GENERATOR