VendorsJuniperjunos18.3
Vulnerabilities

Juniper Junos 18.3

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

188CVEs
CVE-2020-1601
Junos OS: Upon receipt of certain types of malformed PCEP packets the pccd process may crash.
Published 2020-01-15 · Modified
7.5EPSS 0.011
CVE-2019-0051
SRX5000 Series: Denial of Service vulnerability in SSL-Proxy feature.
Published 2019-10-09 · Modified
7.5EPSS 0.011
CVE-2020-1684
Junos OS: SRX Series: High CPU load due to processing for HTTP traffic when Application Identification is enabled.
Published 2020-10-16 · Modified
7.5EPSS 0.011
CVE-2020-1672
Junos OS: jdhcpd process crash when processing a specific DHCPDv6 packet in DHCPv6 relay configuration.
Published 2020-10-16 · Modified
7.5EPSS 0.010
CVE-2020-1650
Junos OS: MX Series: Denial of Service vulnerability in MS-PIC component on MS-MIC or MS-MPC
Published 2020-07-17 · Modified
7.5EPSS 0.010
CVE-2021-0202
Junos OS: MX Series, EX9200 Series: Trio-based MPC memory leak when Integrated Routing and Bridging (IRB) interface is mapped to a VPLS instance or a Bridge-Domain
Published 2021-01-15 · Modified
7.5EPSS 0.010
CVE-2021-31374
Junos OS and Junos OS Evolved: RPD crash while processing a specially crafted BGP UPDATE or KEEPALIVE message.
Published 2021-10-19 · Modified
7.5EPSS 0.010
CVE-2021-31351
Junos OS: MX Series: Receipt of specific packet on MS-MPC/MS-MIC causes line card reset
Published 2021-10-19 · Modified
7.5EPSS 0.010
CVE-2021-0250
Junos OS and Junos OS Evolved: An attacker sending a specific crafted BGP update message will crash RPD
Published 2021-04-22 · Modified
7.5EPSS 0.010
CVE-2021-31378
Junos OS: An attacker sending spoofed RADIUS messages to a Junos OS device configured for broadband services may cause broadband subscribers to remain stuck in a "Terminating" state.
Published 2021-10-19 · Modified
7.5EPSS 0.010
CVE-2022-22185
Junos OS: SRX Series: Denial of service vulnerability in flowd daemon upon receipt of a specific fragmented packet
Published 2022-04-14 · Modified
7.5EPSS 0.010
CVE-2022-22161
Junos OS: MX104 might become unresponsive if the out-of-band management port receives a flood of traffic
Published 2022-01-19 · Modified
7.5EPSS 0.010
CVE-2021-0280
Junos OS: PTX Series, QFX10K Series: Upon receipt of specific packets BFD sessions might flap due to DDoS policer implementation in Packet Forwarding Engine
Published 2021-07-15 · Modified
7.5EPSS 0.010
CVE-2021-0285
Junos OS: QFX5000 Series and EX4600 Series: Continuous traffic destined to a device configured with MC-LAG leading to nodes losing their control connection which can impact traffic
Published 2021-07-15 · Modified
7.5EPSS 0.010
CVE-2021-0230
Junos OS: SRX Series: Memory leak when querying Aggregated Ethernet (AE) interface statistics
Published 2021-04-22 · Modified
7.5EPSS 0.010
CVE-2022-22177
Junos OS and Junos OS Evolved: After receiving a specific number of crafted packets snmpd will segmentation fault (SIGSEGV) requiring a manual restart.
Published 2022-01-19 · Modified
7.5EPSS 0.010
CVE-2021-0282
Junos OS: RPD crash while processing a specific BGP UPDATE when Multipath or add-path features are enabled
Published 2021-07-15 · Modified
7.5EPSS 0.010
CVE-2022-22153
SRX Series and MX Series with SPC3: A high percentage of fragments might lead to high latency or packet drops
Published 2022-01-19 · Modified
7.5EPSS 0.009
CVE-2022-22174
Junos OS: QFX5000 Series, EX4600: Device may run out of memory, causing traffic loss, upon receipt of specific IPv6 packets
Published 2022-01-19 · Modified
7.5EPSS 0.009
CVE-2021-0260
Junos OS: SNMP fails to properly perform authorization checks on incoming received SNMP requests.
Published 2021-04-22 · Modified
7.5EPSS 0.009
CVE-2020-1607
Junos OS: Cross-Site Scripting (XSS) in J-Web
Published 2020-01-15 · Modified
7.5EPSS 0.009
CVE-2021-0281
Junos OS and Junos OS Evolved: Specific packets can trigger rpd crash when BGP Origin Validation is configured with RPKI
Published 2021-07-15 · Modified
7.5EPSS 0.008
CVE-2023-28964
Junos OS and Junos OS Evolved: Malformed BGP flowspec update causes RPD crash
Published 2023-04-17 · Modified
7.5EPSS 0.006
CVE-2022-22173
Junos OS: CRL failing to download causes a memory leak and ultimately a DoS
Published 2022-01-19 · Modified
7.5EPSS 0.006
CVE-2021-0217
Junos OS: EX Series and QFX Series: Memory leak issue processing specific DHCP packets
Published 2021-01-15 · Modified
7.4EPSS 0.007
CVE-2021-0222
Junos OS: Upon receipt of certain protocol packets with invalid payloads a self-propagating Denial of Service may occur.
Published 2021-01-15 · Modified
7.4EPSS 0.006
CVE-2021-0244
Junos OS: A race condition in the storm control profile may allow an attacker to cause a Denial of Service condition
Published 2021-04-22 · Modified
7.4EPSS 0.006
CVE-2020-1633
Junos OS: MX Series: Crafted packets traversing a Broadband Network Gateway (BNG) configured with IPv6 NDP proxy could lead to Denial of Service
Published 2020-04-09 · Modified
7.4EPSS 0.005
CVE-2021-0241
Junos OS: Receipt of specific DHCPv6 packet may cause jdhcpd to crash and restart
Published 2021-04-22 · Modified
7.4EPSS 0.004
CVE-2021-0240
Junos OS: Receipt of malformed DHCPv6 packets causes jdhcpd to crash and restart.
Published 2021-04-22 · Modified
7.4EPSS 0.004
CVE-2021-0259
Junos OS and Junos OS Evolved: QFX5K Series: Underlay network traffic might not be processed upon receipt of high rate of specific genuine overlay packets in VXLAN scenario
Published 2021-04-22 · Modified
7.4EPSS 0.004
CVE-2022-22176
Junos OS: In a scenario with dhcp-security and option-82 configured jdhcpd crashes upon receipt of a malformed DHCP packet
Published 2022-01-19 · Modified
7.4EPSS 0.004
CVE-2021-0235
Junos OS: SRX1500, SRX4100, SRX4200, SRX4600, SRX5000 Series with SPC2/SPC3, vSRX Series: In a multi-tenant environment, a tenant host administrator may configure logical firewall isolation affecting other tenant networks
Published 2021-04-22 · Modified
7.3EPSS 0.002
CVE-2021-0246
Junos OS: SRX1500, SRX4100, SRX4200, SRX4600, SRX5000 Series with SPC2/SPC3: In a multi-tenant environment, a tenant host administrator may be able to jailbreak out of their network impacting other tenant networks or gather information from other networks.
Published 2021-04-22 · Modified
7.3EPSS 0.002
CVE-2020-1637
Junos OS: SRX Series: Unified Access Control (UAC) bypass vulnerability
Published 2020-04-08 · Modified
7.2EPSS 0.008
CVE-2021-31375
Junos OS: Receipt of a specific BGP update may cause RPKI policy-checks to be bypassed
Published 2021-10-19 · Modified
7.2EPSS 0.008
CVE-2021-0219
Junos OS: Command injection vulnerability in 'request system software' CLI command
Published 2021-01-15 · Modified
7.2EPSS 0.007
CVE-2019-0035
Junos OS: 'set system ports console insecure' allows root password recovery on OAM volumes
Published 2019-04-10 · Modified
7.2EPSS 0.004
CVE-2021-0258
Junos OS: Kernel panic upon receipt of specific TCPv6 packet on management interface
Published 2021-04-22 · Modified
7.1EPSS 0.006
CVE-2019-0073
Junos OS: PKI key pairs are exported with insecure file permissions
Published 2019-10-09 · Modified
7.1EPSS 0.003
← Prev3 / 5Next →