VendorsJuniperjunos22.1
Vulnerabilities

Juniper Junos 22.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

152CVEs
CVE-2023-36845
Junos OS: EX and SRX Series: A PHP vulnerability in J-Web allows an unauthenticated to control an important environment variable
Published 2023-08-17 · Analyzed
9.8KEVEPSS 0.951
CVE-2024-21591
Junos OS: SRX Series and EX Series: Security Vulnerability in J-web allows a preAuth Remote Code Execution
Published 2024-01-12 · Analyzed
9.8EPSS 0.177
CVE-2022-22241
Junos OS: Vulnerability in J-Web may allow deserialization without authentication
Published 2022-10-18 · Modified
9.8EPSS 0.012
CVE-2023-28962
Junos OS: Unauthenticated access vulnerability in J-Web
Published 2023-04-17 · Modified
9.8EPSS 0.006
CVE-2024-21620
Junos OS: SRX Series and EX Series: J-Web doesn't sufficiently sanitize input to prevent XSS
Published 2024-01-25 · Modified
8.8EPSS 0.009
CVE-2022-22246
Junos OS: PHP file inclusion vulnerability in J-Web
Published 2022-10-18 · Modified
8.8EPSS 0.007
CVE-2023-44182
Junos OS and Junos OS Evolved: An Unchecked Return Value in multiple users interfaces affects confidentiality and integrity of device operations
Published 2023-10-12 · Modified
8.8EPSS 0.006
CVE-2024-39547
Junos OS and Junos OS Evolved: cRPD: Receipt of crafted TCP traffic can trigger high CPU utilization
Published 2024-10-11 · Analyzed
8.7EPSS 0.010
CVE-2024-30382
Junos OS and Junos OS Evolved: RPD crash when CoS-based forwarding (CBF) policy is configured
Published 2024-04-12 · Analyzed
8.7EPSS 0.007
CVE-2024-30392
Junos OS: MX Series with SPC3 and MS-MPC/-MIC: When URL filtering is enabled and a specific URL request is received a flowd crash occurs
Published 2024-04-12 · Analyzed
8.7EPSS 0.007
CVE-2024-30394
Junos OS and Junos OS Evolved: A specific EVPN type-5 route causes rpd crash
Published 2024-04-12 · Analyzed
8.7EPSS 0.007
CVE-2024-30405
Junos OS: SRX 5000 Series with SPC2: Processing of specific crafted packets when ALG is enabled causes a transit traffic Denial of Service
Published 2024-04-12 · Analyzed
8.7EPSS 0.006
CVE-2024-47504
Junos OS: SRX5000 Series: Receipt of a specific malformed packet will cause a flowd crash
Published 2024-10-11 · Analyzed
8.7EPSS 0.006
CVE-2024-30398
Junos OS: SRX4600 Series - A high amount of specific traffic causes packet drops and an eventual PFE crash
Published 2024-04-12 · Analyzed
8.7EPSS 0.006
CVE-2024-39552
Junos OS and Junos OS Evolved: Malformed BGP UPDATE causes RPD crash
Published 2024-07-11 · Analyzed
8.7EPSS 0.006
CVE-2024-21598
Junos OS and Junos OS Evolved: A malformed BGP tunnel encapsulation attribute will lead to an rpd crash
Published 2024-04-12 · Analyzed
8.7EPSS 0.006
CVE-2024-30395
Junos OS and Junos OS Evolved: A malformed BGP tunnel encapsulation attribute will lead to an rpd crash
Published 2024-04-12 · Analyzed
8.7EPSS 0.005
CVE-2024-39545
Junos OS: SRX Series, MX Series with SPC3 and NFX350: When VPN tunnels parameters are not configured in specific way the iked process will crash
Published 2024-07-11 · Analyzed
8.7EPSS 0.005
CVE-2024-39551
Junos OS: SRX Series and MX Series with SPC3 and MS-MPC/MIC: Receipt of specific packets in H.323 ALG causes traffic drop
Published 2024-07-11 · Analyzed
8.7EPSS 0.005
CVE-2025-52980
Junos OS: SRX300 Series: rpd will crash upon receiving a specific, valid BGP UPDATE message
Published 2025-07-11 · Analyzed
8.7EPSS 0.005
CVE-2025-21594
Junos OS: MX Series: In DS-lite and NAT scenario receipt of crafted IPv6 traffic causes port block
Published 2025-04-09 · Analyzed
8.7EPSS 0.004
CVE-2024-30397
Junos OS: An invalid certificate causes a Denial of Service in the Internet Key Exchange (IKE) process
Published 2024-04-12 · Modified
8.7EPSS 0.003
CVE-2026-33790
Junos OS: SRX Series: In a NAT64 configuration, receipt of a specific, malformed ICMPv6 packet will cause the srxpfe process to crash and restart.
Published 2026-04-09 · Analyzed
8.7EPSS 0.003
CVE-2024-30401
Junos OS: MX Series and EX9200-15C: Stack-based buffer overflow in aftman
Published 2024-04-12 · Analyzed
8.2EPSS 0.006
CVE-2024-30402
Junos OS and Junos OS Evolved: The l2ald crashes on receiving telemetry messages from a specific subscription
Published 2024-04-12 · Analyzed
8.2EPSS 0.005
CVE-2024-39554
Junos OS and Junos OS Evolved: BGP multipath incremental calculation is resulting in an rpd crash
Published 2024-07-10 · Analyzed
8.2EPSS 0.004
CVE-2024-47506
Junos OS: SRX Series: A large amount of traffic being processed by ATP Cloud can lead to a PFE crash
Published 2024-10-11 · Analyzed
8.2EPSS 0.003
CVE-2023-4481
Junos OS and Junos OS Evolved: A crafted BGP UPDATE message allows a remote attacker to de-peer (reset) BGP sessions (CVE-2023-4481)
Published 2023-08-31 · Modified
7.5EPSS 0.182
CVE-2024-21619
Junos OS: SRX Series and EX Series: J-Web - unauthenticated access to temporary files containing sensitive information
Published 2024-01-25 · Modified
7.5EPSS 0.009
CVE-2023-22415
Junos OS: MX Series and SRX Series: The flow processing daemon (flowd) will crash when specific H.323 packets are received
Published 2023-01-12 · Modified
7.5EPSS 0.008
CVE-2022-22236
Junos OS: SRX Series and MX Series: When specific valid SIP packets are received the PFE will crash
Published 2022-10-18 · Modified
7.5EPSS 0.007
CVE-2022-22228
Junos OS: IPv6 OAM SRv6 network-enabled devices are vulnerable to Denial of Service (DoS) due to RPD memory leak upon receipt of specific a IPv6 packet
Published 2022-10-18 · Modified
7.5EPSS 0.007
CVE-2022-22232
SRX Series: If Unified Threat Management (UTM) Enhanced Content Filtering (CF) is enabled and specific traffic is processed the PFE will crash
Published 2022-10-18 · Modified
7.5EPSS 0.007
CVE-2023-22416
Junos OS: MX Series and SRX Series: The flow processing daemon (flowd) will crash if SIP ALG is enabled and a malformed SIP packet is received
Published 2023-01-12 · Modified
7.5EPSS 0.007
CVE-2023-0026
2023-06: Out-of-Cycle Security Bulletin: Junos OS and Junos OS Evolved: A BGP session will flap upon receipt of a specific, optional transitive attribute
Published 2023-06-21 · Modified
7.5EPSS 0.006
CVE-2023-22413
Junos OS: MX Series: The Multiservices PIC Management Daemon (mspmand) will crash when an IPsec6 tunnel processes specific IPv4 packets
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2023-22403
Junos OS: QFX10K Series: An ICCP flap will be observed due to excessive specific traffic
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2023-36835
Junos OS: QFX10000 Series: All traffic will be dropped after a specific valid IP packet has been received which needs to be routed over a VXLAN tunnel
Published 2023-07-14 · Modified
7.5EPSS 0.006
CVE-2023-36832
Junos OS: MX Series: PFE crash upon receipt of specific packet destined to an AMS interface
Published 2023-07-14 · Modified
7.5EPSS 0.006
CVE-2022-22235
Junos OS: SRX Series: A flowd core will be observed when malformed GPRS traffic is processed
Published 2022-10-18 · Modified
7.5EPSS 0.006
1 / 4Next →