VendorsJuniperjunos20.2
Vulnerabilities

Juniper Junos 20.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

178CVEs
CVE-2021-0259
Junos OS and Junos OS Evolved: QFX5K Series: Underlay network traffic might not be processed upon receipt of high rate of specific genuine overlay packets in VXLAN scenario
Published 2021-04-22 · Modified
7.4EPSS 0.004
CVE-2022-22163
Junos OS: jdhcpd crashes upon receipt of a specific DHCPv6 packet
Published 2022-01-19 · Modified
7.4EPSS 0.004
CVE-2022-22176
Junos OS: In a scenario with dhcp-security and option-82 configured jdhcpd crashes upon receipt of a malformed DHCP packet
Published 2022-01-19 · Modified
7.4EPSS 0.004
CVE-2023-28974
Junos OS: MX Series: In a BBE scenario upon receipt of specific malformed packets from subscribers the process bbe-smgd will crash
Published 2023-04-17 · Modified
7.4EPSS 0.003
CVE-2021-0235
Junos OS: SRX1500, SRX4100, SRX4200, SRX4600, SRX5000 Series with SPC2/SPC3, vSRX Series: In a multi-tenant environment, a tenant host administrator may configure logical firewall isolation affecting other tenant networks
Published 2021-04-22 · Modified
7.3EPSS 0.002
CVE-2021-0219
Junos OS: Command injection vulnerability in 'request system software' CLI command
Published 2021-01-15 · Modified
7.2EPSS 0.007
CVE-2022-22186
Junos OS: EX4650 Series: Certain traffic received by the Junos OS device on the management interface may be forwarded to egress interfaces instead of discarded
Published 2022-04-14 · Modified
7.2EPSS 0.006
CVE-2021-31360
Junos OS and Junos OS Evolved: Denial of Service vulnerability in local file processing
Published 2021-10-19 · Modified
7.1EPSS 0.002
CVE-2021-25220
DNS forwarders - cache poisoning vulnerability
Published 2022-03-23 · Modified
6.8EPSS 0.034
CVE-2021-0231
Junos OS: SRX, vSRX Series: J-Web Path traversal vulnerability in SRX and vSRX Series leads to information disclosure.
Published 2021-04-22 · Modified
6.8EPSS 0.012
CVE-2021-0210
Junos OS: Privilege escalation in J-Web due to arbitrary command and code execution via information disclosure from another users active session
Published 2021-01-15 · Modified
6.8EPSS 0.011
CVE-2021-0236
Junos OS: A specific BGP VPNv6 flowspec message causes routing protocol daemon (rpd) process to crash with a core.
Published 2021-04-22 · Modified
6.8EPSS 0.008
CVE-2023-28972
Junos OS: NFX Series: 'set system ports console insecure' allows root password recovery
Published 2023-04-17 · Modified
6.8EPSS 0.004
CVE-2021-0291
Junos OS and Junos OS Evolved: A vulnerability allows a network based unauthenticated attacker which sends a high rate of specific traffic to cause a partial Denial of Service
Published 2021-07-15 · Modified
6.5EPSS 0.010
CVE-2023-22404
Junos OS: SRX Series and MX Series with SPC3: When IPsec VPN is configured iked will core when a specifically formatted payload is received
Published 2023-01-12 · Modified
6.5EPSS 0.006
CVE-2022-22215
Junos OS and Junos OS Evolved: /var/run/<pid>.env files are potentially not deleted during termination of a gRPC connection causing inode exhaustion
Published 2022-07-20 · Modified
6.5EPSS 0.006
CVE-2022-22202
Junos OS: PTX Series: FPCs may restart unexpectedly upon receipt of specific MPLS packets with certain multi-unit interface configurations
Published 2022-07-20 · Modified
6.5EPSS 0.005
CVE-2021-0221
Junos OS: QFX Series: Traffic loop Denial of Service (DoS) upon receipt of specific IP multicast traffic
Published 2021-01-15 · Modified
6.5EPSS 0.005
CVE-2022-22249
Junos OS: MX Series: An FPC crash might be seen due to mac-moves within the same bridge domain
Published 2022-10-18 · Modified
6.5EPSS 0.005
CVE-2021-0214
Junos OS: Denial of Service in ppmd upon receipt of malformed packet
Published 2021-04-22 · Modified
6.5EPSS 0.005
CVE-2021-31370
Junos OS: QFX5000 Series and EX4600 Series: Control traffic might be dropped if a high rate of specific multicast traffic is received
Published 2021-10-19 · Modified
6.5EPSS 0.004
CVE-2021-31362
Junos OS and Junos OS Evolved: An IS-IS adjacency might be taken down if a bad hello PDU is received for an existing adjacency causing a DoS
Published 2021-10-19 · Modified
6.5EPSS 0.004
CVE-2021-31366
Junos OS: MX Series: In subscriber management / BBE configuration authd can crash if a subscriber with a specific username tries to login leading to a DoS
Published 2021-10-19 · Modified
6.5EPSS 0.004
CVE-2021-0262
Junos OS: QFX10002-60C: Use after free vulnerability found during static code analysis
Published 2021-04-22 · Modified
6.5EPSS 0.004
CVE-2021-0216
Junos OS: ACX5448, ACX710: BFD sessions might flap due to high rate of transit ARP packets
Published 2021-04-22 · Modified
6.5EPSS 0.004
CVE-2021-0257
Junos OS: MX Series, EX9200 Series: Trio-based MPCs memory leak in VPLS with integrated routing and bridging (IRB) interface
Published 2021-04-22 · Modified
6.5EPSS 0.004
CVE-2021-0242
Junos OS: EX4300: FPC crash upon receipt of specific frames on an interface without L2PT or dot1x configured
Published 2021-04-22 · Modified
6.5EPSS 0.004
CVE-2021-31363
Junos OS and Junos OS Evolved: Receipt of a specific LDP message will cause a Denial of Service
Published 2021-10-19 · Modified
6.5EPSS 0.004
CVE-2021-0228
Junos OS: MX Series: DDoS LACP violation upon receipt of specific layer 2 frames in EVPN-VXLAN deployment
Published 2021-04-22 · Modified
6.5EPSS 0.004
CVE-2021-31365
Junos OS: EX2300, EX3400 and EX4300 Series: An Aggregated Ethernet (AE) interface will go down due to a stream of specific layer 2 frames
Published 2021-10-19 · Modified
6.5EPSS 0.004
CVE-2021-31367
Junos OS: PTX Series: An FPC heap memory leak will be triggered by certain Flowspec route operations which can lead to an FPC crash
Published 2021-10-19 · Modified
6.5EPSS 0.004
CVE-2022-22168
Junos OS: vMX and MX150: Specific packets might cause a memory leak and eventually an FPC reboot
Published 2022-01-19 · Modified
6.5EPSS 0.004
CVE-2022-22196
Junos OS and Junos OS Evolved: The rpd CPU spikes to 100% after a malformed ISIS TLV has been received
Published 2022-04-14 · Modified
6.5EPSS 0.004
CVE-2021-0237
Junos OS: EX4300-MP/EX4600/EX4650/QFX5K Series: Packet Forwarding Engine manager (FXPC) process crashes when deployed in a Virtual Chassis (VC) configuration
Published 2021-04-22 · Modified
6.5EPSS 0.004
CVE-2021-0288
Junos OS: MX Series, EX9200 Series: FPC may crash upon receipt of specific MPLS packet affecting Trio-based MPCs
Published 2021-07-15 · Modified
6.5EPSS 0.004
CVE-2021-0224
Junos OS: ANCPD core when hitting maximum-discovery-table-entries limit
Published 2021-04-22 · Modified
6.5EPSS 0.004
CVE-2021-0287
Junos OS and Junos OS Evolved: RPD could crash in SR-ISIS/MPLS environment due to a flap of an ISIS link in the network
Published 2021-07-15 · Modified
6.5EPSS 0.004
CVE-2022-22179
Junos OS: jdhcpd crashes upon receiving a specific DHCP packet
Published 2022-01-19 · Modified
6.5EPSS 0.004
CVE-2022-22155
Junos OS: ACX5448: FPC memory leak due to IPv6 neighbor flaps
Published 2022-01-19 · Modified
6.5EPSS 0.004
CVE-2022-22172
Junos OS and Junos OS Evolved: An l2cpd memory leak can occur when specific LLDP packets are received leading to a DoS
Published 2022-01-19 · Modified
6.5EPSS 0.004
← Prev3 / 5Next →