VendorsJuniperjunos19.2
Vulnerabilities

Juniper Junos 19.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

199CVEs
CVE-2022-22185
Junos OS: SRX Series: Denial of service vulnerability in flowd daemon upon receipt of a specific fragmented packet
Published 2022-04-14 · Modified
7.5EPSS 0.010
CVE-2022-22161
Junos OS: MX104 might become unresponsive if the out-of-band management port receives a flood of traffic
Published 2022-01-19 · Modified
7.5EPSS 0.010
CVE-2021-0230
Junos OS: SRX Series: Memory leak when querying Aggregated Ethernet (AE) interface statistics
Published 2021-04-22 · Modified
7.5EPSS 0.010
CVE-2021-0280
Junos OS: PTX Series, QFX10K Series: Upon receipt of specific packets BFD sessions might flap due to DDoS policer implementation in Packet Forwarding Engine
Published 2021-07-15 · Modified
7.5EPSS 0.010
CVE-2021-0285
Junos OS: QFX5000 Series and EX4600 Series: Continuous traffic destined to a device configured with MC-LAG leading to nodes losing their control connection which can impact traffic
Published 2021-07-15 · Modified
7.5EPSS 0.010
CVE-2022-22177
Junos OS and Junos OS Evolved: After receiving a specific number of crafted packets snmpd will segmentation fault (SIGSEGV) requiring a manual restart.
Published 2022-01-19 · Modified
7.5EPSS 0.010
CVE-2022-22153
SRX Series and MX Series with SPC3: A high percentage of fragments might lead to high latency or packet drops
Published 2022-01-19 · Modified
7.5EPSS 0.009
CVE-2022-22180
Junos OS: EX2300 Series, EX2300-MP Series, EX3400 Series: A slow memory leak due to processing of specific IPv6 packets
Published 2022-01-19 · Modified
7.5EPSS 0.009
CVE-2022-22174
Junos OS: QFX5000 Series, EX4600: Device may run out of memory, causing traffic loss, upon receipt of specific IPv6 packets
Published 2022-01-19 · Modified
7.5EPSS 0.009
CVE-2021-0260
Junos OS: SNMP fails to properly perform authorization checks on incoming received SNMP requests.
Published 2021-04-22 · Modified
7.5EPSS 0.009
CVE-2021-0281
Junos OS and Junos OS Evolved: Specific packets can trigger rpd crash when BGP Origin Validation is configured with RPKI
Published 2021-07-15 · Modified
7.5EPSS 0.008
CVE-2022-22223
Junos OS: QFX10000 Series: In IP/MPLS PHP node scenarios upon receipt of certain crafted packets multiple interfaces in LAG configurations may detach.
Published 2022-10-18 · Modified
7.5EPSS 0.008
CVE-2023-28964
Junos OS and Junos OS Evolved: Malformed BGP flowspec update causes RPD crash
Published 2023-04-17 · Modified
7.5EPSS 0.006
CVE-2023-36832
Junos OS: MX Series: PFE crash upon receipt of specific packet destined to an AMS interface
Published 2023-07-14 · Modified
7.5EPSS 0.006
CVE-2023-28976
Junos OS: MX Series: If a specific traffic rate goes above the DDoS threshold it will lead to an FPC crash
Published 2023-04-17 · Modified
7.5EPSS 0.006
CVE-2023-22411
Junos OS: SRX Series: The flow processing daemon (flowd) will crash when Unified Policies are used with IPv6 and certain dynamic applications are rejected by the device
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2022-22173
Junos OS: CRL failing to download causes a memory leak and ultimately a DoS
Published 2022-01-19 · Modified
7.5EPSS 0.006
CVE-2023-22396
Junos OS: Receipt of crafted TCP packets destined to the device results in MBUF leak leading to a Denial of Service (DoS)
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2022-22218
Junos OS: SRX Series: Upon processing of a genuine packet the pkid process will crash during CMPv2 auto-re-enrollment
Published 2022-10-18 · Modified
7.5EPSS 0.004
CVE-2021-0217
Junos OS: EX Series and QFX Series: Memory leak issue processing specific DHCP packets
Published 2021-01-15 · Modified
7.4EPSS 0.007
CVE-2021-0222
Junos OS: Upon receipt of certain protocol packets with invalid payloads a self-propagating Denial of Service may occur.
Published 2021-01-15 · Modified
7.4EPSS 0.006
CVE-2022-22156
Junos OS: Certificate validation is skipped when fetching system scripts from a HTTPS URL
Published 2022-01-19 · Modified
7.4EPSS 0.006
CVE-2020-1633
Junos OS: MX Series: Crafted packets traversing a Broadband Network Gateway (BNG) configured with IPv6 NDP proxy could lead to Denial of Service
Published 2020-04-09 · Modified
7.4EPSS 0.005
CVE-2021-0241
Junos OS: Receipt of specific DHCPv6 packet may cause jdhcpd to crash and restart
Published 2021-04-22 · Modified
7.4EPSS 0.004
CVE-2021-0240
Junos OS: Receipt of malformed DHCPv6 packets causes jdhcpd to crash and restart.
Published 2021-04-22 · Modified
7.4EPSS 0.004
CVE-2021-0259
Junos OS and Junos OS Evolved: QFX5K Series: Underlay network traffic might not be processed upon receipt of high rate of specific genuine overlay packets in VXLAN scenario
Published 2021-04-22 · Modified
7.4EPSS 0.004
CVE-2022-22163
Junos OS: jdhcpd crashes upon receipt of a specific DHCPv6 packet
Published 2022-01-19 · Modified
7.4EPSS 0.004
CVE-2022-22176
Junos OS: In a scenario with dhcp-security and option-82 configured jdhcpd crashes upon receipt of a malformed DHCP packet
Published 2022-01-19 · Modified
7.4EPSS 0.004
CVE-2021-0235
Junos OS: SRX1500, SRX4100, SRX4200, SRX4600, SRX5000 Series with SPC2/SPC3, vSRX Series: In a multi-tenant environment, a tenant host administrator may configure logical firewall isolation affecting other tenant networks
Published 2021-04-22 · Modified
7.3EPSS 0.002
CVE-2020-1637
Junos OS: SRX Series: Unified Access Control (UAC) bypass vulnerability
Published 2020-04-08 · Modified
7.2EPSS 0.008
CVE-2021-31375
Junos OS: Receipt of a specific BGP update may cause RPKI policy-checks to be bypassed
Published 2021-10-19 · Modified
7.2EPSS 0.008
CVE-2021-0219
Junos OS: Command injection vulnerability in 'request system software' CLI command
Published 2021-01-15 · Modified
7.2EPSS 0.007
CVE-2022-22186
Junos OS: EX4650 Series: Certain traffic received by the Junos OS device on the management interface may be forwarded to egress interfaces instead of discarded
Published 2022-04-14 · Modified
7.2EPSS 0.006
CVE-2021-0258
Junos OS: Kernel panic upon receipt of specific TCPv6 packet on management interface
Published 2021-04-22 · Modified
7.1EPSS 0.006
CVE-2021-31360
Junos OS and Junos OS Evolved: Denial of Service vulnerability in local file processing
Published 2021-10-19 · Modified
7.1EPSS 0.002
CVE-2021-0210
Junos OS: Privilege escalation in J-Web due to arbitrary command and code execution via information disclosure from another users active session
Published 2021-01-15 · Modified
6.8EPSS 0.011
CVE-2021-0236
Junos OS: A specific BGP VPNv6 flowspec message causes routing protocol daemon (rpd) process to crash with a core.
Published 2021-04-22 · Modified
6.8EPSS 0.008
CVE-2021-0247
Junos OS: PTX Series, QFX Series: Due to a race condition input loopback firewall filters applied to interfaces may not operate even when listed in the running configuration.
Published 2021-04-22 · Modified
6.8EPSS 0.006
CVE-2023-28972
Junos OS: NFX Series: 'set system ports console insecure' allows root password recovery
Published 2023-04-17 · Modified
6.8EPSS 0.004
CVE-2022-22154
Junos Fusion: A Satellite Device can be controlled by rewiring it to a foreign AD causing a DoS
Published 2022-01-19 · Modified
6.8EPSS 0.002
← Prev3 / 5Next →