VendorsJuniperjunosall versions
Vulnerabilities

Juniper Junos

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

791CVEs
CVE-2021-31383
Junos OS and Junos OS Evolved: In Point to MultiPoint (P2MP) scenarios receipt of various crafted packets causes RPD to core.
Published 2021-10-19 · Modified
7.5EPSS 0.010
CVE-2022-22209
Junos OS: RIB and PFEs can get out of sync due to a memory leak caused by interface flaps or route churn
Published 2022-07-20 · Modified
7.5EPSS 0.010
CVE-2021-0264
Junos OS and Junos OS Evolved: MX Series with MPC10/MPC11, PTX10003, PTX10008: Line card may crash and restart when traffic is hitting a firewall filter having a term with syslog action configured
Published 2021-04-22 · Modified
7.5EPSS 0.010
CVE-2022-22185
Junos OS: SRX Series: Denial of service vulnerability in flowd daemon upon receipt of a specific fragmented packet
Published 2022-04-14 · Modified
7.5EPSS 0.010
CVE-2022-22161
Junos OS: MX104 might become unresponsive if the out-of-band management port receives a flood of traffic
Published 2022-01-19 · Modified
7.5EPSS 0.010
CVE-2021-0233
Junos OS: ACX500 Series, ACX4000 Series: Denial of Service due to FFEB crash while processing high rate of specific packets.
Published 2021-04-22 · Modified
7.5EPSS 0.010
CVE-2021-0280
Junos OS: PTX Series, QFX10K Series: Upon receipt of specific packets BFD sessions might flap due to DDoS policer implementation in Packet Forwarding Engine
Published 2021-07-15 · Modified
7.5EPSS 0.010
CVE-2021-0230
Junos OS: SRX Series: Memory leak when querying Aggregated Ethernet (AE) interface statistics
Published 2021-04-22 · Modified
7.5EPSS 0.010
CVE-2021-0285
Junos OS: QFX5000 Series and EX4600 Series: Continuous traffic destined to a device configured with MC-LAG leading to nodes losing their control connection which can impact traffic
Published 2021-07-15 · Modified
7.5EPSS 0.010
CVE-2022-22177
Junos OS and Junos OS Evolved: After receiving a specific number of crafted packets snmpd will segmentation fault (SIGSEGV) requiring a manual restart.
Published 2022-01-19 · Modified
7.5EPSS 0.010
CVE-2021-0282
Junos OS: RPD crash while processing a specific BGP UPDATE when Multipath or add-path features are enabled
Published 2021-07-15 · Modified
7.5EPSS 0.010
CVE-2022-22178
Junos OS: MX and SRX series: Flowd core observed if the SIP ALG is enabled and a specific Session Initiation Protocol (SIP) packet is received
Published 2022-01-19 · Modified
7.5EPSS 0.009
CVE-2022-22180
Junos OS: EX2300 Series, EX2300-MP Series, EX3400 Series: A slow memory leak due to processing of specific IPv6 packets
Published 2022-01-19 · Modified
7.5EPSS 0.009
CVE-2022-22174
Junos OS: QFX5000 Series, EX4600: Device may run out of memory, causing traffic loss, upon receipt of specific IPv6 packets
Published 2022-01-19 · Modified
7.5EPSS 0.009
CVE-2022-22153
SRX Series and MX Series with SPC3: A high percentage of fragments might lead to high latency or packet drops
Published 2022-01-19 · Modified
7.5EPSS 0.009
CVE-2022-22171
Junos OS: Specific packets over VXLAN cause FPC reset
Published 2022-01-19 · Modified
7.5EPSS 0.009
CVE-2022-22170
Junos OS: Specific packets over VXLAN cause FPC memory leak and ultimately reset
Published 2022-01-19 · Modified
7.5EPSS 0.009
CVE-2022-22198
Junos OS: MX MS-MPC or MS-MIC, or SRX SPC crashes if it receives a SIP message with a specific contact header format
Published 2022-04-14 · Modified
7.5EPSS 0.009
CVE-2021-0260
Junos OS: SNMP fails to properly perform authorization checks on incoming received SNMP requests.
Published 2021-04-22 · Modified
7.5EPSS 0.009
CVE-2024-21619
Junos OS: SRX Series and EX Series: J-Web - unauthenticated access to temporary files containing sensitive information
Published 2024-01-25 · Modified
7.5EPSS 0.009
CVE-2020-1607
Junos OS: Cross-Site Scripting (XSS) in J-Web
Published 2020-01-15 · Modified
7.5EPSS 0.009
CVE-2021-0281
Junos OS and Junos OS Evolved: Specific packets can trigger rpd crash when BGP Origin Validation is configured with RPKI
Published 2021-07-15 · Modified
7.5EPSS 0.008
CVE-2022-22223
Junos OS: QFX10000 Series: In IP/MPLS PHP node scenarios upon receipt of certain crafted packets multiple interfaces in LAG configurations may detach.
Published 2022-10-18 · Modified
7.5EPSS 0.008
CVE-2022-22206
Junos OS: SRX series: The PFE will crash when specific traffic is scanned by Enhanced Web Filtering safe-search
Published 2022-07-20 · Modified
7.5EPSS 0.008
CVE-2022-22205
Junos OS: SRX Series: An FPC memory leak can occur in an APBR scenario
Published 2022-07-20 · Modified
7.5EPSS 0.008
CVE-2023-22415
Junos OS: MX Series and SRX Series: The flow processing daemon (flowd) will crash when specific H.323 packets are received
Published 2023-01-12 · Modified
7.5EPSS 0.008
CVE-2023-22410
Junos OS: MX Series with MPC10/MPC11: When Suspicious Control Flow Detection (scfd) is enabled and an attacker is sending specific traffic, this causes a memory leak.
Published 2023-01-12 · Modified
7.5EPSS 0.008
CVE-2022-22207
Junos OS: MX Series with MPC11: In a GNF / node slicing scenario gathering AF interface statistics can lead to a kernel crash
Published 2022-07-20 · Modified
7.5EPSS 0.008
CVE-2021-0270
Junos OS: PTX Series, QFX10K Series: A PTX/QFX FPC may restart unexpectedly with the "inline-Jflow" feature enabled on a large-scale deployment
Published 2021-04-22 · Modified
7.5EPSS 0.007
CVE-2024-21614
Junos OS and Junos OS Evolved: A specific query via DREND causes rpd crash
Published 2024-01-12 · Modified
7.5EPSS 0.007
CVE-2022-22175
Junos OS: MX Series and SRX Series: The flowd daemon will crash if the SIP ALG is enabled and specific SIP messages are processed
Published 2022-01-19 · Modified
7.5EPSS 0.007
CVE-2022-22236
Junos OS: SRX Series and MX Series: When specific valid SIP packets are received the PFE will crash
Published 2022-10-18 · Modified
7.5EPSS 0.007
CVE-2022-22232
SRX Series: If Unified Threat Management (UTM) Enhanced Content Filtering (CF) is enabled and specific traffic is processed the PFE will crash
Published 2022-10-18 · Modified
7.5EPSS 0.007
CVE-2022-22231
SRX Series: If UTM Enhanced Content Filtering and AntiVirus are enabled, and specific traffic is processed the PFE will crash
Published 2022-10-18 · Modified
7.5EPSS 0.007
CVE-2022-22228
Junos OS: IPv6 OAM SRv6 network-enabled devices are vulnerable to Denial of Service (DoS) due to RPD memory leak upon receipt of specific a IPv6 packet
Published 2022-10-18 · Modified
7.5EPSS 0.007
CVE-2022-22201
SRX5000 Series with SPC3, SRX4000 Series, and vSRX: When PowerMode IPsec is configured, the PFE will crash upon receipt of a malformed ESP packet
Published 2022-10-18 · Modified
7.5EPSS 0.007
CVE-2022-22184
Junos OS and Junos OS Evolved: A BGP session will flap upon receipt of a specific, optional transitive attribute in version 22.3R1
Published 2022-12-23 · Modified
7.5EPSS 0.007
CVE-2023-22416
Junos OS: MX Series and SRX Series: The flow processing daemon (flowd) will crash if SIP ALG is enabled and a malformed SIP packet is received
Published 2023-01-12 · Modified
7.5EPSS 0.007
CVE-2023-28982
Junos OS and Junos OS Evolved: In a BGP rib sharding scenario when a route is frequently updated an rpd memory leak will occur
Published 2023-04-17 · Modified
7.5EPSS 0.006
CVE-2023-28964
Junos OS and Junos OS Evolved: Malformed BGP flowspec update causes RPD crash
Published 2023-04-17 · Modified
7.5EPSS 0.006
← Prev9 / 20Next →