VendorsJunipersrx380all versions
Vulnerabilities

Juniper SRX380

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

92CVEs
CVE-2021-0261
Junos OS: Denial of Service vulnerability in J-Web and web based (HTTP/HTTPS) services caused by a high number of specific requests
Published 2021-04-22 · Modified
7.5EPSS 0.011
CVE-2022-22185
Junos OS: SRX Series: Denial of service vulnerability in flowd daemon upon receipt of a specific fragmented packet
Published 2022-04-14 · Modified
7.5EPSS 0.010
CVE-2021-0230
Junos OS: SRX Series: Memory leak when querying Aggregated Ethernet (AE) interface statistics
Published 2021-04-22 · Modified
7.5EPSS 0.010
CVE-2022-22178
Junos OS: MX and SRX series: Flowd core observed if the SIP ALG is enabled and a specific Session Initiation Protocol (SIP) packet is received
Published 2022-01-19 · Modified
7.5EPSS 0.009
CVE-2022-22153
SRX Series and MX Series with SPC3: A high percentage of fragments might lead to high latency or packet drops
Published 2022-01-19 · Modified
7.5EPSS 0.009
CVE-2022-22198
Junos OS: MX MS-MPC or MS-MIC, or SRX SPC crashes if it receives a SIP message with a specific contact header format
Published 2022-04-14 · Modified
7.5EPSS 0.009
CVE-2024-21619
Junos OS: SRX Series and EX Series: J-Web - unauthenticated access to temporary files containing sensitive information
Published 2024-01-25 · Modified
7.5EPSS 0.009
CVE-2022-22206
Junos OS: SRX series: The PFE will crash when specific traffic is scanned by Enhanced Web Filtering safe-search
Published 2022-07-20 · Modified
7.5EPSS 0.008
CVE-2022-22205
Junos OS: SRX Series: An FPC memory leak can occur in an APBR scenario
Published 2022-07-20 · Modified
7.5EPSS 0.008
CVE-2023-22415
Junos OS: MX Series and SRX Series: The flow processing daemon (flowd) will crash when specific H.323 packets are received
Published 2023-01-12 · Modified
7.5EPSS 0.008
CVE-2022-22175
Junos OS: MX Series and SRX Series: The flowd daemon will crash if the SIP ALG is enabled and specific SIP messages are processed
Published 2022-01-19 · Modified
7.5EPSS 0.007
CVE-2022-22232
SRX Series: If Unified Threat Management (UTM) Enhanced Content Filtering (CF) is enabled and specific traffic is processed the PFE will crash
Published 2022-10-18 · Modified
7.5EPSS 0.007
CVE-2022-22236
Junos OS: SRX Series and MX Series: When specific valid SIP packets are received the PFE will crash
Published 2022-10-18 · Modified
7.5EPSS 0.007
CVE-2023-22416
Junos OS: MX Series and SRX Series: The flow processing daemon (flowd) will crash if SIP ALG is enabled and a malformed SIP packet is received
Published 2023-01-12 · Modified
7.5EPSS 0.007
CVE-2023-22417
Junos OS: SRX Series: A memory leak might be observed in IPsec VPN scenario leading to an FPC crash
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2022-22235
Junos OS: SRX Series: A flowd core will be observed when malformed GPRS traffic is processed
Published 2022-10-18 · Modified
7.5EPSS 0.006
CVE-2023-36831
Junos OS: SRX Series: jbuf memory leak when SSL Proxy and UTM Web-Filtering is applied
Published 2023-07-14 · Modified
7.5EPSS 0.006
CVE-2023-28985
SRX Series and MX Series: An FPC core is observed when IDP is enabled on the device and a specific malformed SSL packet is received
Published 2023-07-14 · Modified
7.5EPSS 0.006
CVE-2023-22394
Junos OS: SRX Series and MX Series: Memory leak due to receipt of specially crafted SIP calls
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2023-22411
Junos OS: SRX Series: The flow processing daemon (flowd) will crash when Unified Policies are used with IPv6 and certain dynamic applications are rejected by the device
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2024-21606
Junos OS: SRX Series: When "tcp-encap" is configured and specific packets are received flowd will crash
Published 2024-01-12 · Modified
7.5EPSS 0.006
CVE-2024-21586
Junos OS: SRX Series and NFX Series: Specific valid traffic leads to a PFE crash
Published 2024-07-01 · Analyzed
7.5EPSS 0.005
CVE-2023-22412
Junos OS: MX Series and SRX Series: The flow processing daemon (flowd) will crash if the SIP ALG is enabled and specific SIP messages are processed
Published 2023-01-12 · Modified
7.5EPSS 0.005
CVE-2022-22218
Junos OS: SRX Series: Upon processing of a genuine packet the pkid process will crash during CMPv2 auto-re-enrollment
Published 2022-10-18 · Modified
7.5EPSS 0.004
CVE-2023-44198
Junos OS: SRX Series and MX Series: SIP ALG doesn't drop specifically malformed retransmitted SIP packets
Published 2023-10-12 · Modified
7.5EPSS 0.004
CVE-2021-0244
Junos OS: A race condition in the storm control profile may allow an attacker to cause a Denial of Service condition
Published 2021-04-22 · Modified
7.4EPSS 0.006
CVE-2024-21605
Junos OS: SRX 300 Series: Specific link local traffic causes a control plane overload
Published 2024-04-12 · Analyzed
7.1EPSS 0.003
CVE-2024-21609
Junos OS: MX Series with SPC3, and SRX Series: If specific IPsec parameters are negotiated iked will crash due to a memory leak
Published 2024-04-12 · Analyzed
7.1EPSS 0.003
CVE-2026-57021
Junos OS: SRX Series: If VPN compliance-check is configured an attacker can cause http-gk process crash
Published 2026-07-09 · Analyzed
6.9EPSS 0.005
CVE-2026-57024
Junos OS: MX with SPC3, SRX Series: Repeated VPN negotiation failures will eventually cause iked to crash continuously
Published 2026-07-09 · Analyzed
6.9EPSS 0.004
CVE-2025-6549
Junos OS: SRX Series: J-Web can be exposed on additional interfaces
Published 2025-07-11 · Analyzed
6.9EPSS 0.002
CVE-2016-1285
named in ISC BIND 9.x before 9.9.8-P4 and 9.10.x before 9.10.3-P4 does not properly handle DNAME records when parsing fetch reply messages, which allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a malformed packet to the rndc (aka control channel) interface, related to alist.c and sexpr.c.
Published 2016-03-09 · Modified
6.8EPSS 0.591
CVE-2021-25220
DNS forwarders - cache poisoning vulnerability
Published 2022-03-23 · Modified
6.8EPSS 0.034
CVE-2021-0231
Junos OS: SRX, vSRX Series: J-Web Path traversal vulnerability in SRX and vSRX Series leads to information disclosure.
Published 2021-04-22 · Modified
6.8EPSS 0.012
CVE-2024-39527
Junos OS: SRX Series: Low privileged user able to access sensitive information on file system
Published 2024-10-11 · Analyzed
6.8EPSS 0.002
CVE-2025-21592
Junos OS: SRX Series: Low privileged user able to access highly sensitive information on file system
Published 2025-01-09 · Analyzed
6.8EPSS 0.002
CVE-2025-60007
Junos OS: A specifically crafted 'show chassis' command causes chassisd to crash
Published 2026-01-15 · Modified
6.8EPSS 0.001
CVE-2023-22404
Junos OS: SRX Series and MX Series with SPC3: When IPsec VPN is configured iked will core when a specifically formatted payload is received
Published 2023-01-12 · Modified
6.5EPSS 0.006
CVE-2015-5361
Junos: FTPS through SRX opens up wide range of data channel TCP ports
Published 2020-02-28 · Modified
6.5EPSS 0.005
CVE-2020-1688
Junos OS: SRX and NFX Series: Insufficient Web API private key protection
Published 2020-10-16 · Modified
6.5EPSS 0.003
← Prev2 / 3Next →