Vulnerability Description
A Key Exchange without Entity Authentication vulnerability in the SSH implementation of Juniper Networks Apstra allows a unauthenticated, MITM attacker to impersonate managed devices. Due to insufficient SSH host key validation an attacker can perform a machine-in-the-middle attack on the SSH connections from Apstra to managed devices, enabling an attacker to impersonate a managed device and capture user credentials. This issue affects all versions of Apstra before 6.1.1.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
FAQ
What is CVE-2025-13914?
CVE-2025-13914 is a vulnerability with a CVSS score of 8.7 (HIGH). A Key Exchange without Entity Authentication vulnerability in the SSH implementation of Juniper Networks Apstra allows a unauthenticated, MITM attacker to impersonate managed devices. Due to insuff...
How severe is CVE-2025-13914?
CVE-2025-13914 has been rated HIGH with a CVSS base score of 8.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-13914?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.