VendorsJuniperjunos17.4
Vulnerabilities

Juniper Junos 17.4

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

181CVEs
CVE-2021-0223
Junos OS: telnetd.real Local Privilege Escalation vulnerabilities in SUID binaries
Published 2021-01-15 · Modified
7.8EPSS 0.004
CVE-2019-0061
Junos OS: Insecure management daemon (MGD) configuration may allow local privilege escalation
Published 2019-10-09 · Modified
7.8EPSS 0.004
CVE-2021-0204
Junos OS: dexp Local Privilege Escalation vulnerabilities in SUID binaries
Published 2021-01-15 · Modified
7.8EPSS 0.003
CVE-2021-31359
Junos OS and Junos OS Evolved: Local Privilege Escalation vulnerability
Published 2021-10-19 · Modified
7.8EPSS 0.002
CVE-2021-0245
Junos OS: Junos Fusion: Hard-coded credentials on satellite devices allows a locally authenticated attacker to elevate their privileges.
Published 2021-04-22 · Modified
7.8EPSS 0.002
CVE-2021-0255
Junos OS: ethtraceroute Local Privilege Escalation vulnerability in SUID binaries
Published 2021-04-22 · Modified
7.8EPSS 0.002
CVE-2019-0001
Junos OS: MX Series: uncontrolled recursion and crash in Broadband Edge subscriber management daemon (bbe-smgd).
Published 2019-01-15 · Modified
7.5EPSS 0.030
CVE-2018-0048
Junos OS: Memory exhaustion denial of service vulnerability in Routing Protocols Daemon (RPD) with Juniper Extension Toolkit (JET) support.
Published 2018-10-10 · Modified
7.5EPSS 0.029
CVE-2018-0030
Junos OS: MPC7/8/9, PTX-FPC3 (FPC-P1, FPC-P2) and PTX1K: Line card may crash upon receipt of specific MPLS packet.
Published 2018-07-11 · Modified
7.5EPSS 0.024
CVE-2018-15505
An issue was discovered in Embedthis GoAhead before 4.0.1 and Appweb before 7.0.2. An HTTP POST request with a specially crafted "Host" header field may cause a NULL pointer dereference and thus cause a denial of service, as demonstrated by the lack of a trailing ']' character in an IPv6 address.
Published 2018-08-18 · Modified
7.5EPSS 0.022
CVE-2018-0049
Junos OS: Receipt of a specifically crafted malicious MPLS packet leads to a Junos kernel crash.
Published 2018-10-10 · Modified
7.5EPSS 0.022
CVE-2019-0013
Junos OS: RPD crash upon receipt of malformed PIM packet
Published 2019-01-15 · Modified
7.5EPSS 0.017
CVE-2019-0014
Junos OS: QFX and PTX Series: FPC process crashes after J-Flow processes a malformed packet
Published 2019-01-15 · Modified
7.5EPSS 0.017
CVE-2018-0032
Junos OS: RPD crash when receiving a crafted BGP UPDATE
Published 2018-07-11 · Modified
7.5EPSS 0.017
CVE-2019-0012
Junos OS: rpd crash on VPLS PE upon receipt of specific BGP message
Published 2019-01-15 · Modified
7.5EPSS 0.017
CVE-2018-0051
Junos OS: Denial of Service vulnerability in MS-PIC, MS-MIC, MS-MPC, MS-DPC and SRX flow daemon (flowd) related to SIP ALG
Published 2018-10-10 · Modified
7.5EPSS 0.016
CVE-2020-1653
Junos OS: Kernel crash (vmcore) or FPC crash due to mbuf leak
Published 2020-07-17 · Modified
7.5EPSS 0.016
CVE-2019-0049
Junos OS: RPD process crashes when BGP peer restarts
Published 2019-07-11 · Modified
7.5EPSS 0.015
CVE-2020-1640
Junos OS: Receipt of certain genuine BGP packets from any BGP Speaker causes RPD to crash.
Published 2020-07-17 · Modified
7.5EPSS 0.014
CVE-2019-0055
Junos OS: SRX Series: An attacker may cause flowd to crash by sending certain valid SIP traffic to a device with SIP ALG enabled.
Published 2019-10-09 · Modified
7.5EPSS 0.013
CVE-2021-31379
Junos OS: MX Series: MPC 7/8/9/10/11 cards with MAP-E: PFE halts when an attacker sends malformed IPv4 or IPv6 traffic inside the MAP-E tunnel.
Published 2021-10-19 · Modified
7.5EPSS 0.013
CVE-2019-0043
Junos OS: RPD process crashes upon receipt of a specific SNMP packet
Published 2019-04-10 · Modified
7.5EPSS 0.013
CVE-2021-0227
Junos OS: SRX Series: Denial of Service in J-Web upon receipt of crafted HTTP packets
Published 2021-04-22 · Modified
7.5EPSS 0.013
CVE-2019-0068
Junos OS: SRX Series: Denial of Service vulnerability in flowd due to multicast packets
Published 2019-10-09 · Modified
7.5EPSS 0.013
CVE-2019-0075
Junos OS: SRX Series: Denial of Service vulnerability in srxpfe related to PIM
Published 2019-10-09 · Modified
7.5EPSS 0.013
CVE-2020-1662
Junos OS and Junos OS Evolved: RPD crash due to BGP session flapping.
Published 2020-10-16 · Modified
7.5EPSS 0.013
CVE-2020-1657
Junos OS: SRX Series: An attacker sending spoofed packets to IPSec peers may cause a Denial of Service.
Published 2020-10-16 · Modified
7.5EPSS 0.013
CVE-2019-0050
Junos OS: SRX1500: Denial of service due to crash of srxpfe process under heavy traffic conditions.
Published 2019-10-09 · Modified
7.5EPSS 0.013
CVE-2019-0063
Junos OS: MX Series: jdhcpd crash when receiving a specific crafted DHCP response message
Published 2019-10-09 · Modified
7.5EPSS 0.013
CVE-2020-1671
Junos OS: Receipt of malformed DHCPv6 packets causes jdhcpd to crash.
Published 2020-10-16 · Modified
7.5EPSS 0.013
CVE-2020-1644
Junos OS and Junos OS Evolved: RPD crash due to specific BGP UPDATE packets
Published 2020-07-17 · Modified
7.5EPSS 0.013
CVE-2019-0037
Junos OS: jdhcpd crash upon receipt of crafted DHCPv6 solicit message
Published 2019-04-10 · Modified
7.5EPSS 0.013
CVE-2019-0065
Junos OS: MX Series: Denial of Service vulnerability in MS-PIC component on MS-MIC or MS-MPC
Published 2019-10-09 · Modified
7.5EPSS 0.013
CVE-2021-0207
NFX250, NFX350, QFX5K Series, EX2300 Series, EX3400 Series, EX4300 Multigigabit, EX4600 Series: Certain genuine traffic received by the Junos OS device will be discarded instead of forwarded.
Published 2021-01-15 · Modified
7.5EPSS 0.013
CVE-2019-0028
Junos OS: RPD process crashes due to specific BGP peer restarts condition.
Published 2019-04-10 · Modified
7.5EPSS 0.012
CVE-2019-0019
BGP packets can trigger rpd crash when BGP tracing is enabled.
Published 2019-04-10 · Modified
7.5EPSS 0.011
CVE-2022-22159
Junos OS: An attacker sending crafted packets can cause a traffic and CPU Denial of Service (DoS).
Published 2022-01-19 · Modified
7.5EPSS 0.011
CVE-2022-22197
Junos OS and Junos OS Evolved: An rpd core will be observed with proxy BGP route-target filtering enabled and certain route add and delete event happening
Published 2022-04-14 · Modified
7.5EPSS 0.011
CVE-2021-0261
Junos OS: Denial of Service vulnerability in J-Web and web based (HTTP/HTTPS) services caused by a high number of specific requests
Published 2021-04-22 · Modified
7.5EPSS 0.011
CVE-2020-1649
Junos OS: MX Series: PFE crash on MPC7/8/9 upon receipt of small fragments requiring reassembly
Published 2020-07-17 · Modified
7.5EPSS 0.011
← Prev2 / 5Next →