VendorsJuniperjunos17.1
Vulnerabilities

Juniper Junos 17.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

91CVEs
CVE-2019-0066
Junos OS: A malformed IPv4 packet received by Junos in an NG-mVPN scenario may cause the routing protocol daemon (rpd) process to core
Published 2019-10-09 · Modified
7.5EPSS 0.014
CVE-2019-0043
Junos OS: RPD process crashes upon receipt of a specific SNMP packet
Published 2019-04-10 · Modified
7.5EPSS 0.013
CVE-2019-0063
Junos OS: MX Series: jdhcpd crash when receiving a specific crafted DHCP response message
Published 2019-10-09 · Modified
7.5EPSS 0.013
CVE-2019-0037
Junos OS: jdhcpd crash upon receipt of crafted DHCPv6 solicit message
Published 2019-04-10 · Modified
7.5EPSS 0.013
CVE-2019-0065
Junos OS: MX Series: Denial of Service vulnerability in MS-PIC component on MS-MIC or MS-MPC
Published 2019-10-09 · Modified
7.5EPSS 0.013
CVE-2019-0028
Junos OS: RPD process crashes due to specific BGP peer restarts condition.
Published 2019-04-10 · Modified
7.5EPSS 0.012
CVE-2019-0019
BGP packets can trigger rpd crash when BGP tracing is enabled.
Published 2019-04-10 · Modified
7.5EPSS 0.011
CVE-2020-1601
Junos OS: Upon receipt of certain types of malformed PCEP packets the pccd process may crash.
Published 2020-01-15 · Modified
7.5EPSS 0.011
CVE-2021-0230
Junos OS: SRX Series: Memory leak when querying Aggregated Ethernet (AE) interface statistics
Published 2021-04-22 · Modified
7.5EPSS 0.010
CVE-2020-1607
Junos OS: Cross-Site Scripting (XSS) in J-Web
Published 2020-01-15 · Modified
7.5EPSS 0.009
CVE-2021-0222
Junos OS: Upon receipt of certain protocol packets with invalid payloads a self-propagating Denial of Service may occur.
Published 2021-01-15 · Modified
7.4EPSS 0.006
CVE-2021-0244
Junos OS: A race condition in the storm control profile may allow an attacker to cause a Denial of Service condition
Published 2021-04-22 · Modified
7.4EPSS 0.006
CVE-2019-0035
Junos OS: 'set system ports console insecure' allows root password recovery on OAM volumes
Published 2019-04-10 · Modified
7.2EPSS 0.004
CVE-2020-1618
Junos OS: EX and QFX Series: Console port authentication bypass vulnerability
Published 2020-04-08 · Modified
6.9EPSS 0.004
CVE-2020-1600
Junos OS: A specific SNMP command can trigger a high CPU usage Denial of Service in the RPD daemon.
Published 2020-01-15 · Modified
6.8EPSS 0.012
CVE-2021-0247
Junos OS: PTX Series, QFX Series: Due to a race condition input loopback firewall filters applied to interfaces may not operate even when listed in the running configuration.
Published 2021-04-22 · Modified
6.8EPSS 0.006
CVE-2022-22154
Junos Fusion: A Satellite Device can be controlled by rewiring it to a foreign AD causing a DoS
Published 2022-01-19 · Modified
6.8EPSS 0.002
CVE-2020-1619
Junos OS: QFX10K Series, EX9200 Series, MX Series, PTX Series: Privilege escalation vulnerability in NG-RE.
Published 2020-04-08 · Modified
6.7EPSS 0.003
CVE-2018-0003
Junos OS: A crafted MPLS packet may lead to a kernel crash
Published 2018-01-10 · Modified
6.5EPSS 0.009
CVE-2017-10611
Junos: EX Series PFE and MX MPC7E/8E/9E PFE crash when fetching interface stats with 'extended-statistics' enabled
Published 2017-10-13 · Modified
6.5EPSS 0.009
CVE-2020-1604
Junos OS: EX4300/EX4600/QFX3500/QFX5100 Series: Stateless IP firewall filter may fail to evaluate certain packets
Published 2020-01-15 · Modified
6.5EPSS 0.008
CVE-2020-1625
Junos OS: Kernel memory leak in virtual-memory due to interface flaps
Published 2020-04-08 · Modified
6.5EPSS 0.008
CVE-2018-0006
Junos OS: bbe-smgd process denial of service while processing VLAN authentication requests/rejects
Published 2018-01-10 · Modified
6.5EPSS 0.007
CVE-2019-0046
Junos OS: EX4300 Series: Denial of Service upon receipt of large number of specific valid packets on management interface.
Published 2019-07-11 · Modified
6.5EPSS 0.007
CVE-2018-0054
QFX5000/EX4600 Series: Routing protocol flap upon receipt of high rate of Ethernet frames
Published 2018-10-10 · Modified
6.5EPSS 0.006
CVE-2018-0056
MX Series: L2ALD daemon may crash if a duplicate MAC is learned by two different interfaces
Published 2018-10-10 · Modified
6.5EPSS 0.006
CVE-2018-0055
Junos OS: jdhcpd process crash during processing of specially crafted DHCPv6 message
Published 2018-10-10 · Modified
6.5EPSS 0.006
CVE-2018-0029
Junos OS: Kernel crash (vmcore) during broadcast storm after enabling 'monitor traffic interface fxp0'
Published 2018-07-11 · Modified
6.5EPSS 0.006
CVE-2019-0067
Junos OS: Kernel crash (vmcore) upon receipt of a specific link-local IPv6 packet on devices configured with Multi-Chassis Link Aggregation Group (MC-LAG)
Published 2019-10-09 · Modified
6.5EPSS 0.005
CVE-2021-0272
Junos OS: QFX10002-32Q, QFX10002-60C, QFX10002-72Q, QFX10008, QFX10016: In EVPN-VXLAN scenarios receipt of specific genuine packets by an adjacent attacker will cause a kernel memory leak in FPC.
Published 2021-04-22 · Modified
6.5EPSS 0.004
CVE-2021-31365
Junos OS: EX2300, EX3400 and EX4300 Series: An Aggregated Ethernet (AE) interface will go down due to a stream of specific layer 2 frames
Published 2021-10-19 · Modified
6.5EPSS 0.004
CVE-2020-1641
Junos OS: A race condition on receipt of crafted LLDP packets leads to a memory leak and an LLDP crash.
Published 2020-07-17 · Modified
6.5EPSS 0.004
CVE-2021-0290
Junos OS: MX Series, EX9200 Series, SRX4600: Ethernet interface vulnerable to specially crafted frames
Published 2021-07-15 · Modified
6.5EPSS 0.004
CVE-2022-22160
Junos OS: MX Series: The bbe-smgd process crashes if an unsupported configuration exists and a PPPoE client sends a specific message
Published 2022-01-19 · Modified
6.5EPSS 0.004
CVE-2022-22226
Junos OS: EX4300-MP, EX4600, QFX5000 Series: In VxLAN scenarios specific packets processed cause a memory leak leading to a PFE crash
Published 2022-10-18 · Modified
6.5EPSS 0.003
CVE-2018-0034
Junos OS: A malicious crafted IPv6 DHCP packet may cause the JDHCPD daemon to core
Published 2018-07-11 · Modified
5.9EPSS 0.021
CVE-2017-10618
Junos: RPD core due to BGP UPDATE with malformed optional transitive attributes
Published 2017-10-13 · Modified
5.9EPSS 0.015
CVE-2018-0019
Junos: Denial of service vulnerability in SNMP MIB-II subagent daemon (mib2d).
Published 2018-04-11 · Modified
5.9EPSS 0.015
CVE-2018-0031
Junos OS: Receipt of specially crafted UDP packets over MPLS may bypass stateless IP firewall rules
Published 2018-07-11 · Modified
5.9EPSS 0.012
CVE-2020-1629
Junos OS: A race condition vulnerability may cause RPD daemon to crash when processing a BGP NOTIFICATION message.
Published 2020-04-08 · Modified
5.9EPSS 0.007
← Prev2 / 3Next →