VendorsJuniperjunosall versions
Vulnerabilities

Juniper Junos

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

791CVEs
CVE-2020-1604
Junos OS: EX4300/EX4600/QFX3500/QFX5100 Series: Stateless IP firewall filter may fail to evaluate certain packets
Published 2020-01-15 · Modified
6.5EPSS 0.008
CVE-2020-1625
Junos OS: Kernel memory leak in virtual-memory due to interface flaps
Published 2020-04-08 · Modified
6.5EPSS 0.008
CVE-2021-0215
Junos OS: EX Series, QFX Series, SRX Branch Series, MX Series: Memory leak in packet forwarding engine due to 802.1X authenticator port interface flaps
Published 2021-01-15 · Modified
6.5EPSS 0.008
CVE-2019-0038
SRX Series: Crafted packets destined to fxp0 management interface on SRX340/SRX345 devices can lead to DoS
Published 2019-04-10 · Modified
6.5EPSS 0.007
CVE-2018-0006
Junos OS: bbe-smgd process denial of service while processing VLAN authentication requests/rejects
Published 2018-01-10 · Modified
6.5EPSS 0.007
CVE-2016-1280
PKId in Juniper Junos OS before 12.1X44-D52, 12.1X46 before 12.1X46-D37, 12.1X47 before 12.1X47-D30, 12.3 before 12.3R12, 12.3X48 before 12.3X48-D20, 13.3 before 13.3R10, 14.1 before 14.1R8, 14.1X53 before 14.1X53-D40, 14.2 before 14.2R7, 15.1 before 15.1R4, 15.1X49 before 15.1X49-D20, 15.1X53 before 15.1X53-D60, and 16.1 before 16.1R1 allow remote attackers to bypass an intended certificate validation mechanism via a self-signed certificate with an Issuer name that matches a valid CA certificate enrolled in Junos.
Published 2016-09-09 · Modified
6.5EPSS 0.007
CVE-2019-0046
Junos OS: EX4300 Series: Denial of Service upon receipt of large number of specific valid packets on management interface.
Published 2019-07-11 · Modified
6.5EPSS 0.007
CVE-2018-0054
QFX5000/EX4600 Series: Routing protocol flap upon receipt of high rate of Ethernet frames
Published 2018-10-10 · Modified
6.5EPSS 0.006
CVE-2019-0011
Junos OS: Kernel crash after processing specific incoming packet to the out of band management interface (CVE-2019-0011)
Published 2019-01-15 · Modified
6.5EPSS 0.006
CVE-2018-0063
Junos OS: Nexthop index allocation failed: private index space exhausted after incoming ARP requests to management interface
Published 2018-10-10 · Modified
6.5EPSS 0.006
CVE-2023-22404
Junos OS: SRX Series and MX Series with SPC3: When IPsec VPN is configured iked will core when a specifically formatted payload is received
Published 2023-01-12 · Modified
6.5EPSS 0.006
CVE-2018-0056
MX Series: L2ALD daemon may crash if a duplicate MAC is learned by two different interfaces
Published 2018-10-10 · Modified
6.5EPSS 0.006
CVE-2022-22215
Junos OS and Junos OS Evolved: /var/run/<pid>.env files are potentially not deleted during termination of a gRPC connection causing inode exhaustion
Published 2022-07-20 · Modified
6.5EPSS 0.006
CVE-2018-0055
Junos OS: jdhcpd process crash during processing of specially crafted DHCPv6 message
Published 2018-10-10 · Modified
6.5EPSS 0.006
CVE-2018-0029
Junos OS: Kernel crash (vmcore) during broadcast storm after enabling 'monitor traffic interface fxp0'
Published 2018-07-11 · Modified
6.5EPSS 0.006
CVE-2022-22202
Junos OS: PTX Series: FPCs may restart unexpectedly upon receipt of specific MPLS packets with certain multi-unit interface configurations
Published 2022-07-20 · Modified
6.5EPSS 0.005
CVE-2019-0067
Junos OS: Kernel crash (vmcore) upon receipt of a specific link-local IPv6 packet on devices configured with Multi-Chassis Link Aggregation Group (MC-LAG)
Published 2019-10-09 · Modified
6.5EPSS 0.005
CVE-2020-1670
Junos OS: EX4300 Series: High CPU load due to receipt of specific IPv4 packets
Published 2020-10-16 · Modified
6.5EPSS 0.005
CVE-2020-1668
Junos OS: EX2300 Series: High CPU load due to receipt of specific multicast packets on layer 2 interface
Published 2020-10-16 · Modified
6.5EPSS 0.005
CVE-2021-0221
Junos OS: QFX Series: Traffic loop Denial of Service (DoS) upon receipt of specific IP multicast traffic
Published 2021-01-15 · Modified
6.5EPSS 0.005
CVE-2024-21603
Junos OS: MX Series: Gathering statistics in a scaled SCU/DCU configuration will lead to a device crash
Published 2024-01-12 · Modified
6.5EPSS 0.005
CVE-2020-1689
Junos OS: EX4300-MP/EX4600/QFX5K Series: High CPU load due to receipt of specific layer 2 frames when deployed in a Virtual Chassis configuration
Published 2020-10-16 · Modified
6.5EPSS 0.005
CVE-2023-44184
Junos OS and Junos OS Evolved: High CPU load due to specific NETCONF command
Published 2023-10-12 · Analyzed
6.5EPSS 0.005
CVE-2020-1687
Junos OS: EX4300-MP/EX4600/QFX5K Series: High CPU load due to receipt of specific layer 2 frames in EVPN-VXLAN deployment.
Published 2020-10-16 · Modified
6.5EPSS 0.005
CVE-2015-5361
Junos: FTPS through SRX opens up wide range of data channel TCP ports
Published 2020-02-28 · Modified
6.5EPSS 0.005
CVE-2022-22249
Junos OS: MX Series: An FPC crash might be seen due to mac-moves within the same bridge domain
Published 2022-10-18 · Modified
6.5EPSS 0.005
CVE-2020-1651
Junos OS: MX Series: PFE on the line card may crash due to memory leak.
Published 2020-07-17 · Modified
6.5EPSS 0.005
CVE-2021-0214
Junos OS: Denial of Service in ppmd upon receipt of malformed packet
Published 2021-04-22 · Modified
6.5EPSS 0.005
CVE-2022-22237
Junos OS: Peers not configured for TCP-AO can establish a BGP or LDP session even if authentication is configured locally
Published 2022-10-18 · Modified
6.5EPSS 0.004
CVE-2021-0272
Junos OS: QFX10002-32Q, QFX10002-60C, QFX10002-72Q, QFX10008, QFX10016: In EVPN-VXLAN scenarios receipt of specific genuine packets by an adjacent attacker will cause a kernel memory leak in FPC.
Published 2021-04-22 · Modified
6.5EPSS 0.004
CVE-2021-31370
Junos OS: QFX5000 Series and EX4600 Series: Control traffic might be dropped if a high rate of specific multicast traffic is received
Published 2021-10-19 · Modified
6.5EPSS 0.004
CVE-2021-31362
Junos OS and Junos OS Evolved: An IS-IS adjacency might be taken down if a bad hello PDU is received for an existing adjacency causing a DoS
Published 2021-10-19 · Modified
6.5EPSS 0.004
CVE-2021-31366
Junos OS: MX Series: In subscriber management / BBE configuration authd can crash if a subscriber with a specific username tries to login leading to a DoS
Published 2021-10-19 · Modified
6.5EPSS 0.004
CVE-2020-1678
Junos OS and Junos OS Evolved: RPD can crash due to a slow memory leak.
Published 2020-10-16 · Modified
6.5EPSS 0.004
CVE-2021-31363
Junos OS and Junos OS Evolved: Receipt of a specific LDP message will cause a Denial of Service
Published 2021-10-19 · Modified
6.5EPSS 0.004
CVE-2021-0242
Junos OS: EX4300: FPC crash upon receipt of specific frames on an interface without L2PT or dot1x configured
Published 2021-04-22 · Modified
6.5EPSS 0.004
CVE-2021-0257
Junos OS: MX Series, EX9200 Series: Trio-based MPCs memory leak in VPLS with integrated routing and bridging (IRB) interface
Published 2021-04-22 · Modified
6.5EPSS 0.004
CVE-2021-0216
Junos OS: ACX5448, ACX710: BFD sessions might flap due to high rate of transit ARP packets
Published 2021-04-22 · Modified
6.5EPSS 0.004
CVE-2021-0271
Junos OS: EX2200-C Series, EX3200 Series, EX3300 Series, EX4200 Series, EX4500 Series, EX4550 Series, EX6210 Series, EX8208 Series, EX8216 Series: Receipt of a crafted ARP packet by an adjacent attacker will cause the sfid process to core.
Published 2021-04-22 · Modified
6.5EPSS 0.004
CVE-2021-0228
Junos OS: MX Series: DDoS LACP violation upon receipt of specific layer 2 frames in EVPN-VXLAN deployment
Published 2021-04-22 · Modified
6.5EPSS 0.004
← Prev15 / 20Next →