VendorsJuniperjunos18.4
Vulnerabilities

Juniper Junos 18.4

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

199CVEs
CVE-2022-22155
Junos OS: ACX5448: FPC memory leak due to IPv6 neighbor flaps
Published 2022-01-19 · Modified
6.5EPSS 0.004
CVE-2022-22191
Junos OS: EX4300: PFE Denial of Service (DoS) upon receipt of a flood of specific ARP traffic
Published 2022-04-14 · Modified
6.5EPSS 0.004
CVE-2022-22160
Junos OS: MX Series: The bbe-smgd process crashes if an unsupported configuration exists and a PPPoE client sends a specific message
Published 2022-01-19 · Modified
6.5EPSS 0.004
CVE-2023-44183
Junos OS: QFX5000 Series, EX4600 Series: In a VxLAN scenario an adjacent attacker within the VxLAN sending genuine packets may cause a DMA memory leak to occur.
Published 2023-10-12 · Modified
6.5EPSS 0.003
CVE-2022-22214
Junos OS and Junos OS Evolved: In an MPLS scenario upon receipt of a specific IPv6 packet an FPC will crash
Published 2022-07-20 · Modified
6.5EPSS 0.003
CVE-2022-22226
Junos OS: EX4300-MP, EX4600, QFX5000 Series: In VxLAN scenarios specific packets processed cause a memory leak leading to a PFE crash
Published 2022-10-18 · Modified
6.5EPSS 0.003
CVE-2020-1688
Junos OS: SRX and NFX Series: Insufficient Web API private key protection
Published 2020-10-16 · Modified
6.5EPSS 0.003
CVE-2022-22250
Junos OS and Junos OS Evolved: An FPC crash might be seen due to an EVPN MAC entry moving from local to remote
Published 2022-10-18 · Modified
6.5EPSS 0.003
CVE-2023-22407
Junos OS and Junos OS Evolved: An RPD crash can happen due to an MPLS TE tunnel configuration change on a directly connected router
Published 2023-01-12 · Modified
6.5EPSS 0.003
CVE-2021-0289
Junos OS: User-defined ARP Policer isn't applied on Aggregated Ethernet (AE) interface until firewall process is restarted
Published 2021-07-15 · Modified
6.5EPSS 0.003
CVE-2021-0295
Junos OS: QFX10K Series: Denial of Service (DoS) upon receipt of DVMRP packets received on multi-homing ESI in VXLAN.
Published 2021-07-15 · Modified
6.1EPSS 0.011
CVE-2021-0263
Junos OS: PTX Series: Denial of Service in packet processing due to heavy route churn when J-Flow sampling is enabled
Published 2021-04-22 · Modified
5.9EPSS 0.009
CVE-2022-22169
Junos OS and Junos OS Evolved: OSPFv3 session might go into INIT state upon receipt of multiple crafted packets from a trusted neighbor device.
Published 2022-01-19 · Modified
5.9EPSS 0.008
CVE-2021-31386
Junos OS: When using J-Web with HTTP an attacker may retrieve encryption keys via Person-in-the-Middle attacks.
Published 2021-10-19 · Modified
5.9EPSS 0.007
CVE-2020-1629
Junos OS: A race condition vulnerability may cause RPD daemon to crash when processing a BGP NOTIFICATION message.
Published 2020-04-08 · Modified
5.9EPSS 0.007
CVE-2021-31364
Junos OS: SRX Series: The flowd process will crash if log session-close is configured and specific traffic is received
Published 2021-10-19 · Modified
5.9EPSS 0.007
CVE-2022-22220
Junos OS and Junos OS Evolved: Due to a race condition the rpd process can crash upon receipt of a BGP update message containing flow spec route
Published 2022-10-18 · Modified
5.9EPSS 0.005
CVE-2022-22208
Junos OS and Junos OS Evolved: An rpd crash can occur due to memory corruption caused by flapping BGP sessions
Published 2022-10-18 · Modified
5.9EPSS 0.005
CVE-2019-0069
Junos OS: vSRX, SRX1500, SRX4K, ACX5K, EX4600, QFX5100, QFX5110, QFX5200, QFX10K and NFX Series: console management port device authentication credentials are logged in clear text
Published 2019-10-09 · Modified
5.9EPSS 0.002
CVE-2021-0205
Junos OS: MX Series: Dynamic filter fails to match IPv6 prefix
Published 2021-01-15 · Modified
5.8EPSS 0.012
CVE-2021-0234
Junos OS: QFX5100-96S: DDoS protection does not work as expected.
Published 2021-04-22 · Modified
5.8EPSS 0.009
CVE-2020-1685
Junos OS: EX4600, QFX5K Series: Stateless firewall filter matching 'user-vlan-id' will cause incomplete discard action
Published 2020-10-16 · Modified
5.8EPSS 0.008
CVE-2019-0074
Junos OS: NFX150 Series, QFX10K Series, EX9200 Series, MX Series, PTX Series: Path traversal vulnerability in NFX150 and NG-RE leads to information disclosure.
Published 2019-10-09 · Modified
5.5EPSS 0.004
CVE-2020-1682
Junos OS: SRX1500, vSRX, SRX4K, NFX150, NFX250: Denial of service vulnerability executing local CLI command
Published 2020-10-16 · Modified
5.5EPSS 0.003
CVE-2021-0293
Junos OS: Out-of-memory condition and crashes can occur after executing a certain CLI command repeatedly
Published 2021-07-15 · Modified
5.5EPSS 0.002
CVE-2020-1630
Junos OS: Privilege escalation vulnerability in dual REs, VC or HA cluster may allow unauthorized configuration change.
Published 2020-04-08 · Modified
5.5EPSS 0.002
CVE-2021-0256
Junos OS: mosquitto Local Privilege Escalation vulnerability in SUID binaries
Published 2021-04-22 · Modified
5.5EPSS 0.002
CVE-2021-31377
Junos OS: A local authenticated attacker can cause RPD to core
Published 2021-10-19 · Modified
5.5EPSS 0.002
CVE-2022-22234
Junos OS: EX2300 and EX3400 Series: One of more SFPs might become unavailable when the system is very busy
Published 2022-10-18 · Modified
5.5EPSS 0.002
CVE-2020-1680
Junos OS: MX Series: MS-MPC/MIC might crash when processing malformed IPv6 packet in NAT64 configuration.
Published 2020-10-16 · Modified
5.3EPSS 0.013
CVE-2020-1628
Junos OS: EX4300: Traffic from the network internal to the device (128.0.0.0) may be forwarded to egress interfaces
Published 2020-04-08 · Modified
5.3EPSS 0.013
CVE-2021-0229
Junos OS: Receipt of specific packets could lead to Denial of Service in MQTT Server
Published 2021-04-22 · Modified
5.3EPSS 0.012
CVE-2021-31361
Junos OS: QFX Series and PTX Series: FPC resource usage increases when certain packets are processed which are being VXLAN encapsulated
Published 2021-10-19 · Modified
5.3EPSS 0.010
CVE-2020-1655
Junos OS: MX Series: PFE crash on MPC7/8/9 upon receipt of large packets requiring fragmentation
Published 2020-07-17 · Modified
5.3EPSS 0.010
CVE-2021-0273
Junos OS and Junos OS Evolved: Trio Chipset: Denial of Service due to packet destined to device's interfaces.
Published 2021-04-22 · Modified
5.3EPSS 0.010
CVE-2021-31369
Junos OS: MX Series: Traffic drops will be observed if MS-MPC/MS-PIC resources are consumed by certain traffic causing a partial DoS
Published 2021-10-19 · Modified
5.3EPSS 0.010
CVE-2021-0294
Junos OS: QFX5000 Series and EX4600 Series: Enhanced storm control might not work leading to partial Denial of Service
Published 2021-07-15 · Modified
5.3EPSS 0.009
CVE-2021-0243
Junos OS: EX4300: Stateless firewall policer fails to discard traffic
Published 2021-04-22 · Modified
4.7EPSS 0.004
CVE-2022-22216
Junos OS: PTX Series and QFX10000 Series: 'Etherleak' memory disclosure in Ethernet padding data
Published 2022-07-20 · Modified
4.3EPSS 0.003
← Prev5 / 5