VendorsJuniperjunosall versions
Vulnerabilities

Juniper Junos

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

791CVEs
CVE-2016-1274
Juniper Junos OS 14.1X53 before 14.1X53-D30 on QFX Series switches allows remote attackers to cause a denial of service (PFE panic) via a high rate of unspecified VXLAN packets.
Published 2016-04-15 · Modified
7.8EPSS 0.014
CVE-2018-0020
Junos OS: rpd daemon cores due to malformed BGP UPDATE packet
Published 2018-04-11 · Modified
7.8EPSS 0.013
CVE-2020-1608
Junos OS: MX Series: In BBE configurations, receipt of a specific MPLS or IPv6 packet causes a Denial of Service
Published 2020-01-15 · Modified
7.8EPSS 0.013
CVE-2021-31368
Junos OS: EX2300 Series, EX3400 Series, and ACX710 might become unresponsive if the out-of-band management port receives a flood of traffic
Published 2021-10-19 · Modified
7.8EPSS 0.011
CVE-2020-1683
Junos OS: Memory leak leads to kernel crash (vmcore) due to SNMP polling
Published 2020-10-16 · Modified
7.8EPSS 0.011
CVE-2021-0283
Junos OS: Upon receipt of specific sequences of genuine packets destined to the device the kernel will crash and restart (vmcore)
Published 2021-07-15 · Modified
7.8EPSS 0.010
CVE-2021-0284
Junos OS: Upon receipt of specific sequences of genuine packets destined to the device the kernel will crash and restart (vmcore)
Published 2021-08-17 · Modified
7.8EPSS 0.010
CVE-2021-0218
Junos OS: Command injection vulnerability in license-check daemon
Published 2021-01-15 · Modified
7.8EPSS 0.008
CVE-2019-0053
Junos OS: Insufficient validation of environment variables in telnet client may lead to stack-based buffer overflow
Published 2019-07-11 · Modified
7.8EPSS 0.006
CVE-2021-0253
Junos OS: NFX Series: Local Command Execution Vulnerability in JDMD Leads to Privilege Escalation
Published 2021-04-22 · Modified
7.8EPSS 0.005
CVE-2021-0252
Junos OS: NFX Series: Local Code Execution Vulnerability in JDMD Leads to Privilege Escalation
Published 2021-04-22 · Modified
7.8EPSS 0.005
CVE-2017-2344
Junos: Buffer overflow in sockets library
Published 2017-07-14 · Modified
7.8EPSS 0.005
CVE-2016-1278
Juniper Junos OS before 12.1X46-D50 on SRX Series devices reverts to "safe mode" authentication and allows root CLI logins without a password after a failed upgrade to 12.1X46, which might allow local users to gain privileges by leveraging use of the "request system software" command with the "partition" option.
Published 2016-08-05 · Modified
7.8EPSS 0.005
CVE-2017-10603
Junos OS: Local XML Injection through CLI command can lead to privilege escalation
Published 2017-07-14 · Modified
7.8EPSS 0.004
CVE-2017-10602
Junos OS: buffer overflow vulnerability in Junos CLI
Published 2017-07-14 · Modified
7.8EPSS 0.004
CVE-2020-1664
Junos OS: Buffer overflow vulnerability in device control daemon
Published 2020-10-16 · Modified
7.8EPSS 0.004
CVE-2021-0223
Junos OS: telnetd.real Local Privilege Escalation vulnerabilities in SUID binaries
Published 2021-01-15 · Modified
7.8EPSS 0.004
CVE-2019-0057
NFX Series: An attacker may be able to take control of the JDM application and subsequently the entire system.
Published 2019-10-09 · Modified
7.8EPSS 0.004
CVE-2018-0024
Junos OS: A privilege escalation vulnerability exists where authenticated users with shell access can become root
Published 2018-07-11 · Modified
7.8EPSS 0.004
CVE-2019-0061
Junos OS: Insecure management daemon (MGD) configuration may allow local privilege escalation
Published 2019-10-09 · Modified
7.8EPSS 0.004
CVE-2019-0058
Junos OS: SRX Series: A weakness in the Veriexec subsystem may allow privilege escalation.
Published 2019-10-09 · Modified
7.8EPSS 0.003
CVE-2014-6448
Juniper Junos OS 13.2 before 13.2R5, 13.2X51, 13.2X52, and 13.3 before 13.3R3 allow local users to bypass intended restrictions and execute arbitrary Python code via vectors involving shell access.
Published 2020-01-15 · Modified
7.8EPSS 0.003
CVE-2016-1271
Juniper Junos OS before 12.1X46-D45, 12.1X47 before 12.1X47-D30, 12.3 before 12.3R11, 12.3X48 before 12.3X48-D25, 13.2 before 13.2R8, 13.3 before 13.3R7, 14.1 before 14.1R6, 14.2 before 14.2R4, 15.1 before 15.1R1 or 15.1F2, and 15.1X49 before 15.1X49-D15 allow local users to gain privileges via crafted combinations of CLI commands and arguments, a different vulnerability than CVE-2015-3003, CVE-2014-3816, and CVE-2014-0615.
Published 2016-04-15 · Modified
7.8EPSS 0.003
CVE-2021-0204
Junos OS: dexp Local Privilege Escalation vulnerabilities in SUID binaries
Published 2021-01-15 · Modified
7.8EPSS 0.003
CVE-2021-31359
Junos OS and Junos OS Evolved: Local Privilege Escalation vulnerability
Published 2021-10-19 · Modified
7.8EPSS 0.002
CVE-2022-22162
Junos OS: A low privileged user can elevate their privileges to the ones of the highest privileged j-web user logged in
Published 2022-01-19 · Modified
7.8EPSS 0.002
CVE-2021-0245
Junos OS: Junos Fusion: Hard-coded credentials on satellite devices allows a locally authenticated attacker to elevate their privileges.
Published 2021-04-22 · Modified
7.8EPSS 0.002
CVE-2022-22221
Junos OS: SRX and EX Series: Local privilege escalation flaw in "download" functionality
Published 2022-07-20 · Modified
7.8EPSS 0.002
CVE-2021-0255
Junos OS: ethtraceroute Local Privilege Escalation vulnerability in SUID binaries
Published 2021-04-22 · Modified
7.8EPSS 0.002
CVE-2019-0071
Junos OS: EX2300, EX3400 Series: Veriexec signature checking not enforced in specific versions of Junos OS
Published 2019-10-09 · Modified
7.8EPSS 0.002
CVE-2022-22251
cSRX Series: Storing Passwords in a Recoverable Format and software permissions issues allows a local attacker to elevate privileges
Published 2022-10-18 · Modified
7.8EPSS 0.002
CVE-2025-30644
Junos OS: EX2300, EX3400, EX4000 Series, QFX5k Series: Receipt of a specific DHCP packet causes FPC crash when DHCP Option 82 is enabled
Published 2025-04-09 · Analyzed
7.7EPSS 0.003
CVE-2017-3145
Improper fetch cleanup sequencing in the resolver can cause named to crash
Published 2019-01-16 · Modified
7.5EPSS 0.279
CVE-2023-4481
Junos OS and Junos OS Evolved: A crafted BGP UPDATE message allows a remote attacker to de-peer (reset) BGP sessions (CVE-2023-4481)
Published 2023-08-31 · Modified
7.5EPSS 0.182
CVE-2019-0001
Junos OS: MX Series: uncontrolled recursion and crash in Broadband Edge subscriber management daemon (bbe-smgd).
Published 2019-01-15 · Modified
7.5EPSS 0.030
CVE-2018-0048
Junos OS: Memory exhaustion denial of service vulnerability in Routing Protocols Daemon (RPD) with Juniper Extension Toolkit (JET) support.
Published 2018-10-10 · Modified
7.5EPSS 0.029
CVE-2018-15504
An issue was discovered in Embedthis GoAhead before 4.0.1 and Appweb before 7.0.2. The server mishandles some HTTP request fields associated with time, which results in a NULL pointer dereference, as demonstrated by If-Modified-Since or If-Unmodified-Since with a month greater than 11.
Published 2018-08-18 · Modified
7.5EPSS 0.028
CVE-2019-0010
Junos OS: SRX Series: Crafted HTTP traffic may cause UTM to consume all mbufs, leading to Denial of Service
Published 2019-01-15 · Modified
7.5EPSS 0.027
CVE-2014-6379
Juniper Junos 11.4 before R12, 12.1 before R10, 12.1X44 before D35, 12.1X45 before D25, 12.1X46 before D20, 12.1X47 before D10, 12.2 before R8, 12.2X50 before D70, 12.3 before R6, 13.1 before R4-S3, 13.1X49 before D55, 13.1X50 before D30, 13.2 before R4, 13.2X50 before D20, 13.2X51 before D26 and D30, 13.2X52 before D15, 13.3 before R2, and 14.1 before R1, when a RADIUS accounting server is configured as [system accounting destination radius], creates an entry in /var/etc/pam_radius.conf, which might allow remote attackers to bypass authentication via unspecified vectors.
Published 2014-10-14 · Modified
7.5EPSS 0.025
CVE-2018-0027
Junos OS: Receipt of malformed RSVP packet may lead to RPD denial of service
Published 2018-07-11 · Modified
7.5EPSS 0.024
← Prev6 / 20Next →