VendorsJuniperjunos19.3
Vulnerabilities

Juniper Junos 19.3

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

189CVEs
CVE-2021-0281
Junos OS and Junos OS Evolved: Specific packets can trigger rpd crash when BGP Origin Validation is configured with RPKI
Published 2021-07-15 · Modified
7.5EPSS 0.008
CVE-2022-22223
Junos OS: QFX10000 Series: In IP/MPLS PHP node scenarios upon receipt of certain crafted packets multiple interfaces in LAG configurations may detach.
Published 2022-10-18 · Modified
7.5EPSS 0.008
CVE-2023-28964
Junos OS and Junos OS Evolved: Malformed BGP flowspec update causes RPD crash
Published 2023-04-17 · Modified
7.5EPSS 0.006
CVE-2023-22417
Junos OS: SRX Series: A memory leak might be observed in IPsec VPN scenario leading to an FPC crash
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2023-36832
Junos OS: MX Series: PFE crash upon receipt of specific packet destined to an AMS interface
Published 2023-07-14 · Modified
7.5EPSS 0.006
CVE-2023-28976
Junos OS: MX Series: If a specific traffic rate goes above the DDoS threshold it will lead to an FPC crash
Published 2023-04-17 · Modified
7.5EPSS 0.006
CVE-2023-28965
Junos OS: QFX10002: Failure of storm control feature may lead to Denial of Service
Published 2023-04-17 · Modified
7.5EPSS 0.006
CVE-2023-22394
Junos OS: SRX Series and MX Series: Memory leak due to receipt of specially crafted SIP calls
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2023-22411
Junos OS: SRX Series: The flow processing daemon (flowd) will crash when Unified Policies are used with IPv6 and certain dynamic applications are rejected by the device
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2022-22173
Junos OS: CRL failing to download causes a memory leak and ultimately a DoS
Published 2022-01-19 · Modified
7.5EPSS 0.006
CVE-2023-22396
Junos OS: Receipt of crafted TCP packets destined to the device results in MBUF leak leading to a Denial of Service (DoS)
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2022-22218
Junos OS: SRX Series: Upon processing of a genuine packet the pkid process will crash during CMPv2 auto-re-enrollment
Published 2022-10-18 · Modified
7.5EPSS 0.004
CVE-2021-0217
Junos OS: EX Series and QFX Series: Memory leak issue processing specific DHCP packets
Published 2021-01-15 · Modified
7.4EPSS 0.007
CVE-2021-0222
Junos OS: Upon receipt of certain protocol packets with invalid payloads a self-propagating Denial of Service may occur.
Published 2021-01-15 · Modified
7.4EPSS 0.006
CVE-2022-22156
Junos OS: Certificate validation is skipped when fetching system scripts from a HTTPS URL
Published 2022-01-19 · Modified
7.4EPSS 0.006
CVE-2021-0241
Junos OS: Receipt of specific DHCPv6 packet may cause jdhcpd to crash and restart
Published 2021-04-22 · Modified
7.4EPSS 0.004
CVE-2021-0240
Junos OS: Receipt of malformed DHCPv6 packets causes jdhcpd to crash and restart.
Published 2021-04-22 · Modified
7.4EPSS 0.004
CVE-2021-0259
Junos OS and Junos OS Evolved: QFX5K Series: Underlay network traffic might not be processed upon receipt of high rate of specific genuine overlay packets in VXLAN scenario
Published 2021-04-22 · Modified
7.4EPSS 0.004
CVE-2022-22176
Junos OS: In a scenario with dhcp-security and option-82 configured jdhcpd crashes upon receipt of a malformed DHCP packet
Published 2022-01-19 · Modified
7.4EPSS 0.004
CVE-2021-0235
Junos OS: SRX1500, SRX4100, SRX4200, SRX4600, SRX5000 Series with SPC2/SPC3, vSRX Series: In a multi-tenant environment, a tenant host administrator may configure logical firewall isolation affecting other tenant networks
Published 2021-04-22 · Modified
7.3EPSS 0.002
CVE-2020-1637
Junos OS: SRX Series: Unified Access Control (UAC) bypass vulnerability
Published 2020-04-08 · Modified
7.2EPSS 0.008
CVE-2021-31375
Junos OS: Receipt of a specific BGP update may cause RPKI policy-checks to be bypassed
Published 2021-10-19 · Modified
7.2EPSS 0.008
CVE-2021-0219
Junos OS: Command injection vulnerability in 'request system software' CLI command
Published 2021-01-15 · Modified
7.2EPSS 0.007
CVE-2022-22186
Junos OS: EX4650 Series: Certain traffic received by the Junos OS device on the management interface may be forwarded to egress interfaces instead of discarded
Published 2022-04-14 · Modified
7.2EPSS 0.006
CVE-2021-0258
Junos OS: Kernel panic upon receipt of specific TCPv6 packet on management interface
Published 2021-04-22 · Modified
7.1EPSS 0.006
CVE-2021-31360
Junos OS and Junos OS Evolved: Denial of Service vulnerability in local file processing
Published 2021-10-19 · Modified
7.1EPSS 0.002
CVE-2021-25220
DNS forwarders - cache poisoning vulnerability
Published 2022-03-23 · Modified
6.8EPSS 0.034
CVE-2021-0231
Junos OS: SRX, vSRX Series: J-Web Path traversal vulnerability in SRX and vSRX Series leads to information disclosure.
Published 2021-04-22 · Modified
6.8EPSS 0.012
CVE-2021-0210
Junos OS: Privilege escalation in J-Web due to arbitrary command and code execution via information disclosure from another users active session
Published 2021-01-15 · Modified
6.8EPSS 0.011
CVE-2021-0236
Junos OS: A specific BGP VPNv6 flowspec message causes routing protocol daemon (rpd) process to crash with a core.
Published 2021-04-22 · Modified
6.8EPSS 0.008
CVE-2023-28972
Junos OS: NFX Series: 'set system ports console insecure' allows root password recovery
Published 2023-04-17 · Modified
6.8EPSS 0.004
CVE-2021-0291
Junos OS and Junos OS Evolved: A vulnerability allows a network based unauthenticated attacker which sends a high rate of specific traffic to cause a partial Denial of Service
Published 2021-07-15 · Modified
6.5EPSS 0.010
CVE-2021-0215
Junos OS: EX Series, QFX Series, SRX Branch Series, MX Series: Memory leak in packet forwarding engine due to 802.1X authenticator port interface flaps
Published 2021-01-15 · Modified
6.5EPSS 0.008
CVE-2023-22404
Junos OS: SRX Series and MX Series with SPC3: When IPsec VPN is configured iked will core when a specifically formatted payload is received
Published 2023-01-12 · Modified
6.5EPSS 0.006
CVE-2022-22215
Junos OS and Junos OS Evolved: /var/run/<pid>.env files are potentially not deleted during termination of a gRPC connection causing inode exhaustion
Published 2022-07-20 · Modified
6.5EPSS 0.006
CVE-2022-22202
Junos OS: PTX Series: FPCs may restart unexpectedly upon receipt of specific MPLS packets with certain multi-unit interface configurations
Published 2022-07-20 · Modified
6.5EPSS 0.005
CVE-2020-1670
Junos OS: EX4300 Series: High CPU load due to receipt of specific IPv4 packets
Published 2020-10-16 · Modified
6.5EPSS 0.005
CVE-2020-1668
Junos OS: EX2300 Series: High CPU load due to receipt of specific multicast packets on layer 2 interface
Published 2020-10-16 · Modified
6.5EPSS 0.005
CVE-2021-0221
Junos OS: QFX Series: Traffic loop Denial of Service (DoS) upon receipt of specific IP multicast traffic
Published 2021-01-15 · Modified
6.5EPSS 0.005
CVE-2020-1689
Junos OS: EX4300-MP/EX4600/QFX5K Series: High CPU load due to receipt of specific layer 2 frames when deployed in a Virtual Chassis configuration
Published 2020-10-16 · Modified
6.5EPSS 0.005
← Prev3 / 5Next →