Disable J-Web, or limit access to only trusted hosts.
The Juniper SIRT would like to acknowledge and thank Phil from Sense of Security Labs for reporting this vulnerability.