VendorsJuniperjunos16.2
Vulnerabilities

Juniper Junos 16.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

73CVEs
CVE-2019-0063
Junos OS: MX Series: jdhcpd crash when receiving a specific crafted DHCP response message
Published 2019-10-09 · Modified
7.5EPSS 0.013
CVE-2019-0037
Junos OS: jdhcpd crash upon receipt of crafted DHCPv6 solicit message
Published 2019-04-10 · Modified
7.5EPSS 0.013
CVE-2019-0065
Junos OS: MX Series: Denial of Service vulnerability in MS-PIC component on MS-MIC or MS-MPC
Published 2019-10-09 · Modified
7.5EPSS 0.013
CVE-2019-0028
Junos OS: RPD process crashes due to specific BGP peer restarts condition.
Published 2019-04-10 · Modified
7.5EPSS 0.012
CVE-2019-0019
BGP packets can trigger rpd crash when BGP tracing is enabled.
Published 2019-04-10 · Modified
7.5EPSS 0.011
CVE-2020-1601
Junos OS: Upon receipt of certain types of malformed PCEP packets the pccd process may crash.
Published 2020-01-15 · Modified
7.5EPSS 0.011
CVE-2020-1607
Junos OS: Cross-Site Scripting (XSS) in J-Web
Published 2020-01-15 · Modified
7.5EPSS 0.009
CVE-2021-0244
Junos OS: A race condition in the storm control profile may allow an attacker to cause a Denial of Service condition
Published 2021-04-22 · Modified
7.4EPSS 0.006
CVE-2019-0035
Junos OS: 'set system ports console insecure' allows root password recovery on OAM volumes
Published 2019-04-10 · Modified
7.2EPSS 0.004
CVE-2020-1600
Junos OS: A specific SNMP command can trigger a high CPU usage Denial of Service in the RPD daemon.
Published 2020-01-15 · Modified
6.8EPSS 0.012
CVE-2021-0247
Junos OS: PTX Series, QFX Series: Due to a race condition input loopback firewall filters applied to interfaces may not operate even when listed in the running configuration.
Published 2021-04-22 · Modified
6.8EPSS 0.006
CVE-2022-22154
Junos Fusion: A Satellite Device can be controlled by rewiring it to a foreign AD causing a DoS
Published 2022-01-19 · Modified
6.8EPSS 0.002
CVE-2020-1619
Junos OS: QFX10K Series, EX9200 Series, MX Series, PTX Series: Privilege escalation vulnerability in NG-RE.
Published 2020-04-08 · Modified
6.7EPSS 0.003
CVE-2018-0003
Junos OS: A crafted MPLS packet may lead to a kernel crash
Published 2018-01-10 · Modified
6.5EPSS 0.009
CVE-2017-10611
Junos: EX Series PFE and MX MPC7E/8E/9E PFE crash when fetching interface stats with 'extended-statistics' enabled
Published 2017-10-13 · Modified
6.5EPSS 0.009
CVE-2018-0006
Junos OS: bbe-smgd process denial of service while processing VLAN authentication requests/rejects
Published 2018-01-10 · Modified
6.5EPSS 0.007
CVE-2018-0054
QFX5000/EX4600 Series: Routing protocol flap upon receipt of high rate of Ethernet frames
Published 2018-10-10 · Modified
6.5EPSS 0.006
CVE-2018-0056
MX Series: L2ALD daemon may crash if a duplicate MAC is learned by two different interfaces
Published 2018-10-10 · Modified
6.5EPSS 0.006
CVE-2018-0055
Junos OS: jdhcpd process crash during processing of specially crafted DHCPv6 message
Published 2018-10-10 · Modified
6.5EPSS 0.006
CVE-2018-0029
Junos OS: Kernel crash (vmcore) during broadcast storm after enabling 'monitor traffic interface fxp0'
Published 2018-07-11 · Modified
6.5EPSS 0.006
CVE-2019-0067
Junos OS: Kernel crash (vmcore) upon receipt of a specific link-local IPv6 packet on devices configured with Multi-Chassis Link Aggregation Group (MC-LAG)
Published 2019-10-09 · Modified
6.5EPSS 0.005
CVE-2021-0272
Junos OS: QFX10002-32Q, QFX10002-60C, QFX10002-72Q, QFX10008, QFX10016: In EVPN-VXLAN scenarios receipt of specific genuine packets by an adjacent attacker will cause a kernel memory leak in FPC.
Published 2021-04-22 · Modified
6.5EPSS 0.004
CVE-2022-22160
Junos OS: MX Series: The bbe-smgd process crashes if an unsupported configuration exists and a PPPoE client sends a specific message
Published 2022-01-19 · Modified
6.5EPSS 0.004
CVE-2018-0034
Junos OS: A malicious crafted IPv6 DHCP packet may cause the JDHCPD daemon to core
Published 2018-07-11 · Modified
5.9EPSS 0.021
CVE-2017-10618
Junos: RPD core due to BGP UPDATE with malformed optional transitive attributes
Published 2017-10-13 · Modified
5.9EPSS 0.015
CVE-2018-0019
Junos: Denial of service vulnerability in SNMP MIB-II subagent daemon (mib2d).
Published 2018-04-11 · Modified
5.9EPSS 0.015
CVE-2018-0031
Junos OS: Receipt of specially crafted UDP packets over MPLS may bypass stateless IP firewall rules
Published 2018-07-11 · Modified
5.9EPSS 0.012
CVE-2020-1629
Junos OS: A race condition vulnerability may cause RPD daemon to crash when processing a BGP NOTIFICATION message.
Published 2020-04-08 · Modified
5.9EPSS 0.007
CVE-2020-1630
Junos OS: Privilege escalation vulnerability in dual REs, VC or HA cluster may allow unauthorized configuration change.
Published 2020-04-08 · Modified
5.5EPSS 0.002
CVE-2018-0061
Junos OS: Denial of service in telnetd
Published 2018-10-10 · Modified
5.3EPSS 0.023
CVE-2017-10621
Junos OS: Denial of service vulnerability in telnetd
Published 2017-10-13 · Modified
5.3EPSS 0.018
CVE-2021-0229
Junos OS: Receipt of specific packets could lead to Denial of Service in MQTT Server
Published 2021-04-22 · Modified
5.3EPSS 0.012
CVE-2014-9708
Embedthis Appweb before 4.6.6 and 5.x before 5.2.1 allows remote attackers to cause a denial of service (NULL pointer dereference) via a Range header with an empty value, as demonstrated by "Range: x=,".
Published 2015-03-31 · Modified
5.0EPSS 0.562
← Prev2 / 2