VendorsJunipernfx150all versions
Vulnerabilities

Juniper NFX150

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

25CVEs
CVE-2021-0248
NFX Series: Hard-coded credentials allow an attacker to take control of any instance through administrative interfaces.
Published 2021-04-22 · Modified
10.0EPSS 0.010
CVE-2018-0044
NFX Series: Insecure sshd configuration in Juniper Device Manager (JDM) and host OS
Published 2018-10-10 · Modified
9.8EPSS 0.013
CVE-2018-0052
Junos OS: Unauthenticated remote root access possible when RSH service is enabled
Published 2018-10-10 · Modified
9.3EPSS 0.049
CVE-2018-0043
Junos OS: RPD daemon crashes upon receipt of specific MPLS packet
Published 2018-10-10 · Modified
8.8EPSS 0.012
CVE-2018-0045
Junos OS: RPD daemon crashes due to receipt of specific Draft-Rosen MVPN control packet in Draft-Rosen MVPN configuration
Published 2018-10-10 · Modified
8.8EPSS 0.011
CVE-2019-0070
Junos OS: NFX Series: An Improper Input Validation weakness allows a malicious local attacker to elevate their permissions.
Published 2019-10-09 · Modified
8.8EPSS 0.004
CVE-2020-1613
Junos OS: BGP session termination upon receipt of specific BGP FlowSpec advertisement.
Published 2020-04-08 · Modified
8.6EPSS 0.013
CVE-2018-0022
Junos OS: Mbuf leak due to processing MPLS packets in VPLS network.
Published 2018-04-11 · Modified
7.8EPSS 0.022
CVE-2018-0020
Junos OS: rpd daemon cores due to malformed BGP UPDATE packet
Published 2018-04-11 · Modified
7.8EPSS 0.013
CVE-2021-0253
Junos OS: NFX Series: Local Command Execution Vulnerability in JDMD Leads to Privilege Escalation
Published 2021-04-22 · Modified
7.8EPSS 0.005
CVE-2021-0252
Junos OS: NFX Series: Local Code Execution Vulnerability in JDMD Leads to Privilege Escalation
Published 2021-04-22 · Modified
7.8EPSS 0.005
CVE-2019-0057
NFX Series: An attacker may be able to take control of the JDM application and subsequently the entire system.
Published 2019-10-09 · Modified
7.8EPSS 0.004
CVE-2018-0049
Junos OS: Receipt of a specifically crafted malicious MPLS packet leads to a Junos kernel crash.
Published 2018-10-10 · Modified
7.5EPSS 0.022
CVE-2019-0043
Junos OS: RPD process crashes upon receipt of a specific SNMP packet
Published 2019-04-10 · Modified
7.5EPSS 0.013
CVE-2021-0206
Junos OS: NFX Series, SRX Series: PFE may crash upon receipt of specific packet when SSL Proxy is configured.
Published 2021-01-15 · Modified
7.5EPSS 0.013
CVE-2024-21586
Junos OS: SRX Series and NFX Series: Specific valid traffic leads to a PFE crash
Published 2024-07-01 · Analyzed
7.5EPSS 0.005
CVE-2023-28972
Junos OS: NFX Series: 'set system ports console insecure' allows root password recovery
Published 2023-04-17 · Modified
6.8EPSS 0.004
CVE-2020-1688
Junos OS: SRX and NFX Series: Insufficient Web API private key protection
Published 2020-10-16 · Modified
6.5EPSS 0.003
CVE-2021-0289
Junos OS: User-defined ARP Policer isn't applied on Aggregated Ethernet (AE) interface until firewall process is restarted
Published 2021-07-15 · Modified
6.5EPSS 0.003
CVE-2018-0034
Junos OS: A malicious crafted IPv6 DHCP packet may cause the JDHCPD daemon to core
Published 2018-07-11 · Modified
5.9EPSS 0.021
CVE-2018-0019
Junos: Denial of service vulnerability in SNMP MIB-II subagent daemon (mib2d).
Published 2018-04-11 · Modified
5.9EPSS 0.015
CVE-2019-0069
Junos OS: vSRX, SRX1500, SRX4K, ACX5K, EX4600, QFX5100, QFX5110, QFX5200, QFX10K and NFX Series: console management port device authentication credentials are logged in clear text
Published 2019-10-09 · Modified
5.9EPSS 0.002
CVE-2019-0074
Junos OS: NFX150 Series, QFX10K Series, EX9200 Series, MX Series, PTX Series: Path traversal vulnerability in NFX150 and NG-RE leads to information disclosure.
Published 2019-10-09 · Modified
5.5EPSS 0.004
CVE-2020-1682
Junos OS: SRX1500, vSRX, SRX4K, NFX150, NFX250: Denial of service vulnerability executing local CLI command
Published 2020-10-16 · Modified
5.5EPSS 0.003
CVE-2018-0061
Junos OS: Denial of service in telnetd
Published 2018-10-10 · Modified
5.3EPSS 0.023