VendorsJuniperjunos24.2
Vulnerabilities

Juniper Junos 24.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

82CVEs
CVE-2024-39547
Junos OS and Junos OS Evolved: cRPD: Receipt of crafted TCP traffic can trigger high CPU utilization
Published 2024-10-11 · Analyzed
8.7EPSS 0.010
CVE-2024-47504
Junos OS: SRX5000 Series: Receipt of a specific malformed packet will cause a flowd crash
Published 2024-10-11 · Analyzed
8.7EPSS 0.006
CVE-2026-21906
Junos OS: SRX Series: With GRE performance acceleration enabled, receipt of a specific ICMP packet causes the PFE to crash
Published 2026-01-15 · Analyzed
8.7EPSS 0.006
CVE-2026-21920
Junos OS: SRX Series: If a specific request is processed by the DNS subsystem flowd will crash
Published 2026-01-15 · Analyzed
8.7EPSS 0.005
CVE-2024-39549
Junos OS and Junos OS Evolved: Receipt of malformed BGP path attributes leads to a memory leak
Published 2024-07-11 · Modified
8.7EPSS 0.005
CVE-2026-57026
Junos OS: MX Series with SPC3, SRX Series: Processing of a specifically malformed SIP invite causes a flowd crash
Published 2026-07-09 · Analyzed
8.7EPSS 0.005
CVE-2026-57023
Junos OS: MX with SPC3, SRX Series: A specifically malformed TCP packet causes a flowd crash
Published 2026-07-09 · Analyzed
8.7EPSS 0.005
CVE-2025-52946
Junos OS and Junos OS Evolved: With traceoptions enabled, receipt of malformed AS PATH causes RPD crash
Published 2025-07-11 · Analyzed
8.7EPSS 0.004
CVE-2025-52981
Junos OS: SRX Series: Sequence of specific PIM packets causes a flowd crash
Published 2025-07-11 · Analyzed
8.7EPSS 0.004
CVE-2025-60004
Junos OS and Junos OS Evolved: Specific BGP EVPN update message causes rpd crash
Published 2025-10-09 · Analyzed
8.7EPSS 0.004
CVE-2026-21905
Junos OS: SRX Series, MX Series with MX-SPC3 or MS-MPC: Receipt of multiple specific SIP messages results in flow management process crash
Published 2026-01-15 · Analyzed
8.7EPSS 0.004
CVE-2025-30659
Junos OS: SRX Series: A device configured for vector routing crashes when receiving malformed traffic
Published 2025-04-09 · Analyzed
8.7EPSS 0.004
CVE-2025-60003
Junos OS and Junos OS Evolved: BGP update with a set of specific attributes causes rpd crash
Published 2026-01-15 · Analyzed
8.7EPSS 0.004
CVE-2025-30656
Junos OS: MX Series, SRX Series: Processing of specific SIP INVITE messages by the SIP ALG will lead to an FPC crash
Published 2025-04-09 · Analyzed
8.7EPSS 0.004
CVE-2026-21917
Junos OS: SRX Series: Specifically malformed SSL packet causes FPC crash
Published 2026-01-15 · Analyzed
8.7EPSS 0.004
CVE-2025-21601
Junos OS: SRX and EX Series, MX240, MX480, MX960, QFX5120 Series: When web management is enabled for specific services an attacker may cause a CPU spike by sending genuine packets to the device
Published 2025-04-09 · Analyzed
8.7EPSS 0.004
CVE-2025-30658
Junos OS: SRX Series: On devices with Anti-Virus enabled, malicious server responses will cause memory to leak ultimately causing forwarding to stop
Published 2025-04-09 · Analyzed
8.7EPSS 0.004
CVE-2025-30649
Junos OS: MX240, MX480, MX960 with SPC3: An attacker sending specific packets will cause a CPU utilization DoS.
Published 2025-04-09 · Analyzed
8.7EPSS 0.004
CVE-2026-21918
Junos OS: SRX and MX Series: When TCP packets occur in a specific sequence flowd crashes
Published 2026-01-15 · Analyzed
8.7EPSS 0.004
CVE-2026-33778
Junos OS: SRX Series, MX Series: When a specifically malformed first ISAKMP packet is received kmd/iked crashes
Published 2026-04-09 · Analyzed
8.7EPSS 0.003
CVE-2026-33790
Junos OS: SRX Series: In a NAT64 configuration, receipt of a specific, malformed ICMPv6 packet will cause the srxpfe process to crash and restart.
Published 2026-04-09 · Analyzed
8.7EPSS 0.003
CVE-2026-21914
Junos OS: SRX Series: A specifically malformed GTP message will cause an FPC crash
Published 2026-01-15 · Analyzed
8.7EPSS 0.003
CVE-2025-52983
Junos OS: After removing ssh public key authentication root can still log in
Published 2025-07-11 · Analyzed
8.6EPSS 0.006
CVE-2025-30661
Junos OS: Low-privileged user can cause script to run as root, leading to privilege escalation
Published 2025-07-11 · Analyzed
8.5EPSS 0.002
CVE-2026-33793
Junos OS and Junos OS Evolved: When an unsigned Python op script configuration is present, a local low privileged user can compromise the system
Published 2026-04-09 · Analyzed
8.5EPSS 0.002
CVE-2026-33791
Junos OS and Junos OS Evolved: Execution of crafted CLI commands allows for arbitrary shell injection as root
Published 2026-04-09 · Modified
8.4EPSS 0.007
CVE-2025-30650
Junos OS: Privileged local user can gain access to a Linux-based FPC as root
Published 2026-04-08 · Analyzed
8.4EPSS 0.001
CVE-2026-33779
Junos OS: SRX Series: Insufficient certificate verification for device to SD cloud communication
Published 2026-04-09 · Analyzed
8.3EPSS 0.001
CVE-2025-21598
Junos OS and Junos OS Evolved: When BGP traceoptions are configured, receipt of malformed BGP packets causes RPD to crash
Published 2025-01-09 · Analyzed
8.2EPSS 0.007
CVE-2025-52948
Junos OS: Specific unknown traffic pattern causes FPC and system to crash when packet capturing is enabled
Published 2025-07-11 · Analyzed
8.2EPSS 0.004
CVE-2025-52984
Junos OS and Junos OS Evolved: When a static route points to a reject next-hop and a gNMI query for this route is processed, RPD crashes
Published 2025-07-11 · Analyzed
8.2EPSS 0.004
CVE-2026-57022
Junos OS: MX Series with SPC3, SRX Series: Specific packet in response to a TCP connection establishment by the affected device can crash the PFE
Published 2026-07-09 · Analyzed
8.2EPSS 0.004
CVE-2026-57030
Junos OS: SRX Series: Flow sessions are not getting cleared leading to a DoS
Published 2026-07-09 · Analyzed
8.2EPSS 0.004
CVE-2025-52960
Junos OS: SRX Series and MX Series: Receipt of specific SIP packets in a high utilization situation causes a flowd/mspmand crash
Published 2025-10-09 · Analyzed
8.2EPSS 0.003
CVE-2025-30644
Junos OS: EX2300, EX3400, EX4000 Series, QFX5k Series: Receipt of a specific DHCP packet causes FPC crash when DHCP Option 82 is enabled
Published 2025-04-09 · Analyzed
7.7EPSS 0.003
CVE-2026-21908
Junos OS and Junos OS Evolved: Use after free vulnerability In 802.1X authentication daemon can cause crash of the dot1xd process
Published 2026-01-15 · Analyzed
7.5EPSS 0.003
CVE-2025-21591
Junos OS: An unauthenticated adjacent attacker sending a malformed DHCP packet causes jdhcpd to crash
Published 2025-04-09 · Analyzed
7.4EPSS 0.003
CVE-2025-59960
Junos OS and Junos OS Evolved: DHCP Option 82 messages from clients being passed unmodified to the DHCP server
Published 2026-01-15 · Analyzed
7.4EPSS 0.003
CVE-2025-30648
Junos OS and Junos OS Evolved: Receipt of a specifically malformed DHCP packet causes jdhcpd process to crash
Published 2025-04-09 · Analyzed
7.4EPSS 0.002
CVE-2026-21916
Junos OS: A low privileged user can escalate their privileges so that they can login as root
Published 2026-04-09 · Analyzed
7.3EPSS 0.001
1 / 3Next →