CVE-2020-1676: Juniper Mist Cloud UI

High severity, CVSS 7.2. EPSS: 0.9% chance of exploitation in the next 30 days.

When SAML authentication is enabled, Juniper Networks Mist Cloud UI might incorrectly handle SAML responses, allowing a remote attacker to modify a valid SAML response without invalidating its cryptographic signature to bypass SAML authentication security controls. This issue affects all Juniper Networks Mist Cloud UI versions prior to September 2 2020.

Affected products

  • Juniper Mist Cloud UI: before 2020-09-02 (fixed in 2020-09-02)

Published 2020-10-16. Last modified 2026-06-17.