VendorsJuniperjunos22.2
Vulnerabilities

Juniper Junos 22.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

196CVEs
CVE-2023-36845
Junos OS: EX and SRX Series: A PHP vulnerability in J-Web allows an unauthenticated to control an important environment variable
Published 2023-08-17 · Analyzed
9.8KEVEPSS 0.951
CVE-2024-21591
Junos OS: SRX Series and EX Series: Security Vulnerability in J-web allows a preAuth Remote Code Execution
Published 2024-01-12 · Analyzed
9.8EPSS 0.177
CVE-2023-28962
Junos OS: Unauthenticated access vulnerability in J-Web
Published 2023-04-17 · Modified
9.8EPSS 0.006
CVE-2024-21620
Junos OS: SRX Series and EX Series: J-Web doesn't sufficiently sanitize input to prevent XSS
Published 2024-01-25 · Modified
8.8EPSS 0.009
CVE-2023-44182
Junos OS and Junos OS Evolved: An Unchecked Return Value in multiple users interfaces affects confidentiality and integrity of device operations
Published 2023-10-12 · Modified
8.8EPSS 0.006
CVE-2024-39565
Junos OS: J-Web: An unauthenticated, network-based attacker can perform XPATH injection attack against a device.
Published 2024-07-10 · Analyzed
8.8EPSS 0.005
CVE-2024-39547
Junos OS and Junos OS Evolved: cRPD: Receipt of crafted TCP traffic can trigger high CPU utilization
Published 2024-10-11 · Analyzed
8.7EPSS 0.010
CVE-2024-30392
Junos OS: MX Series with SPC3 and MS-MPC/-MIC: When URL filtering is enabled and a specific URL request is received a flowd crash occurs
Published 2024-04-12 · Analyzed
8.7EPSS 0.007
CVE-2024-30394
Junos OS and Junos OS Evolved: A specific EVPN type-5 route causes rpd crash
Published 2024-04-12 · Analyzed
8.7EPSS 0.007
CVE-2024-47499
Junos OS and Junos OS Evolved: In a BMP scenario receipt of a malformed AS PATH attribute can cause an RPD crash
Published 2024-10-11 · Analyzed
8.7EPSS 0.006
CVE-2024-30405
Junos OS: SRX 5000 Series with SPC2: Processing of specific crafted packets when ALG is enabled causes a transit traffic Denial of Service
Published 2024-04-12 · Analyzed
8.7EPSS 0.006
CVE-2024-30398
Junos OS: SRX4600 Series - A high amount of specific traffic causes packet drops and an eventual PFE crash
Published 2024-04-12 · Analyzed
8.7EPSS 0.006
CVE-2024-47497
Junos OS: SRX Series, QFX Series, MX Series and EX Series: Receiving specific HTTPS traffic causes resource exhaustion
Published 2024-10-11 · Analyzed
8.7EPSS 0.006
CVE-2024-39552
Junos OS and Junos OS Evolved: Malformed BGP UPDATE causes RPD crash
Published 2024-07-11 · Analyzed
8.7EPSS 0.006
CVE-2024-21598
Junos OS and Junos OS Evolved: A malformed BGP tunnel encapsulation attribute will lead to an rpd crash
Published 2024-04-12 · Analyzed
8.7EPSS 0.006
CVE-2024-30395
Junos OS and Junos OS Evolved: A malformed BGP tunnel encapsulation attribute will lead to an rpd crash
Published 2024-04-12 · Analyzed
8.7EPSS 0.005
CVE-2024-39555
Junos OS and Junos OS Evolved: Receipt of a specific malformed BGP update causes the session to reset
Published 2024-07-10 · Analyzed
8.7EPSS 0.005
CVE-2024-39545
Junos OS: SRX Series, MX Series with SPC3 and NFX350: When VPN tunnels parameters are not configured in specific way the iked process will crash
Published 2024-07-11 · Analyzed
8.7EPSS 0.005
CVE-2024-39530
Junos OS: Attempting to access specific sensors on platforms not supporting these will lead to a chassisd crash
Published 2024-07-11 · Modified
8.7EPSS 0.005
CVE-2024-39551
Junos OS: SRX Series and MX Series with SPC3 and MS-MPC/MIC: Receipt of specific packets in H.323 ALG causes traffic drop
Published 2024-07-11 · Analyzed
8.7EPSS 0.005
CVE-2024-39529
Junos OS: SRX Series: If DNS traceoptions are configured in a DGA or tunnel detection scenario specific DNS traffic leads to a PFE crash
Published 2024-07-11 · Modified
8.7EPSS 0.005
CVE-2024-39542
Junos OS and Junos OS Evolved: A malformed CFM packet or specific transit traffic leads to FPC crash
Published 2024-07-11 · Analyzed
8.7EPSS 0.005
CVE-2024-39549
Junos OS and Junos OS Evolved: Receipt of malformed BGP path attributes leads to a memory leak
Published 2024-07-11 · Modified
8.7EPSS 0.005
CVE-2024-39515
Junos OS and Junos OS Evolved: With BGP traceoptions enabled, receipt of specifically malformed BGP update causes RPD crash
Published 2024-10-09 · Analyzed
8.7EPSS 0.005
CVE-2025-52981
Junos OS: SRX Series: Sequence of specific PIM packets causes a flowd crash
Published 2025-07-11 · Analyzed
8.7EPSS 0.004
CVE-2025-52946
Junos OS and Junos OS Evolved: With traceoptions enabled, receipt of malformed AS PATH causes RPD crash
Published 2025-07-11 · Analyzed
8.7EPSS 0.004
CVE-2024-39516
Junos OS and Junos OS Evolved: With certain BGP options enabled, receipt of specifically malformed BGP update causes RPD crash
Published 2024-10-09 · Analyzed
8.7EPSS 0.004
CVE-2024-39525
Junos OS and Junos OS Evolved: When BGP traceoptions is enabled, receipt of specially crafted BGP packet causes RPD crash
Published 2024-10-09 · Analyzed
8.7EPSS 0.004
CVE-2024-39518
Junos OS: MX240, MX480, MX960 platforms using MPC10E: Memory leak will be observed when subscribed to a specific subscription on Junos Telemetry Interface
Published 2024-07-10 · Analyzed
8.7EPSS 0.004
CVE-2024-39564
Junos OS and Junos OS Evolved: Receipt of malformed BGP path attributes leads to RPD crash
Published 2025-02-05 · Analyzed
8.7EPSS 0.004
CVE-2025-30658
Junos OS: SRX Series: On devices with Anti-Virus enabled, malicious server responses will cause memory to leak ultimately causing forwarding to stop
Published 2025-04-09 · Analyzed
8.7EPSS 0.004
CVE-2025-30656
Junos OS: MX Series, SRX Series: Processing of specific SIP INVITE messages by the SIP ALG will lead to an FPC crash
Published 2025-04-09 · Analyzed
8.7EPSS 0.004
CVE-2025-30651
Junos OS and Junos OS Evolved: Receipt of a specific ICMPv6 packet causes a memory overrun leading to an rpd crash
Published 2025-04-09 · Analyzed
8.7EPSS 0.004
CVE-2025-30660
Junos OS: MX Series: Decapsulation of specific GRE packets leads to PFE reset
Published 2025-04-09 · Analyzed
8.7EPSS 0.004
CVE-2025-30649
Junos OS: MX240, MX480, MX960 with SPC3: An attacker sending specific packets will cause a CPU utilization DoS.
Published 2025-04-09 · Analyzed
8.7EPSS 0.004
CVE-2025-30645
Junos OS: SRX Series: Transmission of specific control traffic sent out of a DS-Lite tunnel results in flowd crash
Published 2025-04-09 · Analyzed
8.7EPSS 0.004
CVE-2025-21601
Junos OS: SRX and EX Series, MX240, MX480, MX960, QFX5120 Series: When web management is enabled for specific services an attacker may cause a CPU spike by sending genuine packets to the device
Published 2025-04-09 · Analyzed
8.7EPSS 0.004
CVE-2025-30659
Junos OS: SRX Series: A device configured for vector routing crashes when receiving malformed traffic
Published 2025-04-09 · Analyzed
8.7EPSS 0.004
CVE-2025-21594
Junos OS: MX Series: In DS-lite and NAT scenario receipt of crafted IPv6 traffic causes port block
Published 2025-04-09 · Analyzed
8.7EPSS 0.004
CVE-2024-30397
Junos OS: An invalid certificate causes a Denial of Service in the Internet Key Exchange (IKE) process
Published 2024-04-12 · Modified
8.7EPSS 0.003
1 / 5Next →