VendorsJuniperjunos21.2
Vulnerabilities

Juniper Junos 21.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

244CVEs
CVE-2025-52988
Junos OS and Junos OS Evolved: Privilege escalation to root via CLI command 'request system logout'
Published 2025-07-11 · Analyzed
8.4EPSS 0.005
CVE-2023-44194
Junos OS: An unauthenticated attacker with local access to the device can create a backdoor with root privileges
Published 2023-10-12 · Modified
8.4EPSS 0.002
CVE-2025-21598
Junos OS and Junos OS Evolved: When BGP traceoptions are configured, receipt of malformed BGP packets causes RPD to crash
Published 2025-01-09 · Analyzed
8.2EPSS 0.007
CVE-2024-30401
Junos OS: MX Series and EX9200-15C: Stack-based buffer overflow in aftman
Published 2024-04-12 · Analyzed
8.2EPSS 0.006
CVE-2024-30402
Junos OS and Junos OS Evolved: The l2ald crashes on receiving telemetry messages from a specific subscription
Published 2024-04-12 · Analyzed
8.2EPSS 0.005
CVE-2025-52948
Junos OS: Specific unknown traffic pattern causes FPC and system to crash when packet capturing is enabled
Published 2025-07-11 · Analyzed
8.2EPSS 0.004
CVE-2025-52984
Junos OS and Junos OS Evolved: When a static route points to a reject next-hop and a gNMI query for this route is processed, RPD crashes
Published 2025-07-11 · Analyzed
8.2EPSS 0.004
CVE-2025-52982
Junos OS: MX Series: When specific SIP packets are processed the MS-MPC will crash
Published 2025-07-11 · Analyzed
8.2EPSS 0.004
CVE-2024-39554
Junos OS and Junos OS Evolved: BGP multipath incremental calculation is resulting in an rpd crash
Published 2024-07-10 · Analyzed
8.2EPSS 0.004
CVE-2021-0283
Junos OS: Upon receipt of specific sequences of genuine packets destined to the device the kernel will crash and restart (vmcore)
Published 2021-07-15 · Modified
7.8EPSS 0.010
CVE-2021-0284
Junos OS: Upon receipt of specific sequences of genuine packets destined to the device the kernel will crash and restart (vmcore)
Published 2021-08-17 · Modified
7.8EPSS 0.010
CVE-2022-22162
Junos OS: A low privileged user can elevate their privileges to the ones of the highest privileged j-web user logged in
Published 2022-01-19 · Modified
7.8EPSS 0.002
CVE-2022-22221
Junos OS: SRX and EX Series: Local privilege escalation flaw in "download" functionality
Published 2022-07-20 · Modified
7.8EPSS 0.002
CVE-2023-4481
Junos OS and Junos OS Evolved: A crafted BGP UPDATE message allows a remote attacker to de-peer (reset) BGP sessions (CVE-2023-4481)
Published 2023-08-31 · Modified
7.5EPSS 0.182
CVE-2022-22209
Junos OS: RIB and PFEs can get out of sync due to a memory leak caused by interface flaps or route churn
Published 2022-07-20 · Modified
7.5EPSS 0.010
CVE-2022-22161
Junos OS: MX104 might become unresponsive if the out-of-band management port receives a flood of traffic
Published 2022-01-19 · Modified
7.5EPSS 0.010
CVE-2022-22185
Junos OS: SRX Series: Denial of service vulnerability in flowd daemon upon receipt of a specific fragmented packet
Published 2022-04-14 · Modified
7.5EPSS 0.010
CVE-2022-22177
Junos OS and Junos OS Evolved: After receiving a specific number of crafted packets snmpd will segmentation fault (SIGSEGV) requiring a manual restart.
Published 2022-01-19 · Modified
7.5EPSS 0.010
CVE-2022-22178
Junos OS: MX and SRX series: Flowd core observed if the SIP ALG is enabled and a specific Session Initiation Protocol (SIP) packet is received
Published 2022-01-19 · Modified
7.5EPSS 0.009
CVE-2022-22170
Junos OS: Specific packets over VXLAN cause FPC memory leak and ultimately reset
Published 2022-01-19 · Modified
7.5EPSS 0.009
CVE-2022-22171
Junos OS: Specific packets over VXLAN cause FPC reset
Published 2022-01-19 · Modified
7.5EPSS 0.009
CVE-2022-22174
Junos OS: QFX5000 Series, EX4600: Device may run out of memory, causing traffic loss, upon receipt of specific IPv6 packets
Published 2022-01-19 · Modified
7.5EPSS 0.009
CVE-2022-22180
Junos OS: EX2300 Series, EX2300-MP Series, EX3400 Series: A slow memory leak due to processing of specific IPv6 packets
Published 2022-01-19 · Modified
7.5EPSS 0.009
CVE-2022-22198
Junos OS: MX MS-MPC or MS-MIC, or SRX SPC crashes if it receives a SIP message with a specific contact header format
Published 2022-04-14 · Modified
7.5EPSS 0.009
CVE-2024-21619
Junos OS: SRX Series and EX Series: J-Web - unauthenticated access to temporary files containing sensitive information
Published 2024-01-25 · Modified
7.5EPSS 0.009
CVE-2022-22223
Junos OS: QFX10000 Series: In IP/MPLS PHP node scenarios upon receipt of certain crafted packets multiple interfaces in LAG configurations may detach.
Published 2022-10-18 · Modified
7.5EPSS 0.008
CVE-2022-22206
Junos OS: SRX series: The PFE will crash when specific traffic is scanned by Enhanced Web Filtering safe-search
Published 2022-07-20 · Modified
7.5EPSS 0.008
CVE-2022-22205
Junos OS: SRX Series: An FPC memory leak can occur in an APBR scenario
Published 2022-07-20 · Modified
7.5EPSS 0.008
CVE-2023-22415
Junos OS: MX Series and SRX Series: The flow processing daemon (flowd) will crash when specific H.323 packets are received
Published 2023-01-12 · Modified
7.5EPSS 0.008
CVE-2022-22207
Junos OS: MX Series with MPC11: In a GNF / node slicing scenario gathering AF interface statistics can lead to a kernel crash
Published 2022-07-20 · Modified
7.5EPSS 0.008
CVE-2022-22175
Junos OS: MX Series and SRX Series: The flowd daemon will crash if the SIP ALG is enabled and specific SIP messages are processed
Published 2022-01-19 · Modified
7.5EPSS 0.007
CVE-2022-22201
SRX5000 Series with SPC3, SRX4000 Series, and vSRX: When PowerMode IPsec is configured, the PFE will crash upon receipt of a malformed ESP packet
Published 2022-10-18 · Modified
7.5EPSS 0.007
CVE-2022-22228
Junos OS: IPv6 OAM SRv6 network-enabled devices are vulnerable to Denial of Service (DoS) due to RPD memory leak upon receipt of specific a IPv6 packet
Published 2022-10-18 · Modified
7.5EPSS 0.007
CVE-2022-22236
Junos OS: SRX Series and MX Series: When specific valid SIP packets are received the PFE will crash
Published 2022-10-18 · Modified
7.5EPSS 0.007
CVE-2023-22416
Junos OS: MX Series and SRX Series: The flow processing daemon (flowd) will crash if SIP ALG is enabled and a malformed SIP packet is received
Published 2023-01-12 · Modified
7.5EPSS 0.007
CVE-2023-28982
Junos OS and Junos OS Evolved: In a BGP rib sharding scenario when a route is frequently updated an rpd memory leak will occur
Published 2023-04-17 · Modified
7.5EPSS 0.006
CVE-2023-0026
2023-06: Out-of-Cycle Security Bulletin: Junos OS and Junos OS Evolved: A BGP session will flap upon receipt of a specific, optional transitive attribute
Published 2023-06-21 · Modified
7.5EPSS 0.006
CVE-2023-22417
Junos OS: SRX Series: A memory leak might be observed in IPsec VPN scenario leading to an FPC crash
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2023-22403
Junos OS: QFX10K Series: An ICCP flap will be observed due to excessive specific traffic
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2023-22413
Junos OS: MX Series: The Multiservices PIC Management Daemon (mspmand) will crash when an IPsec6 tunnel processes specific IPv4 packets
Published 2023-01-12 · Modified
7.5EPSS 0.006
← Prev2 / 7Next →