Skip to main content

Vendor/product archive

juniper / junos CVEs

Beta · best-effort

786 CVEs tagged to juniper / junos32 Critical, 419 High, 333 Medium, 2 Low, 0 Unrated.

CVE-2022-22172

Published Jan 19, 2022

A Missing Release of Memory after Effective Lifetime vulnerability in the Layer-2 control protocols daemon (l2cpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unau…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-22171

Published Jan 19, 2022

An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows an unauthenticated networked attack…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-22170

Published Jan 19, 2022

A Missing Release of Resource after Effective Lifetime vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows an unauthenticated networked attacke…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-22169

Published Jan 19, 2022

An Improper Initialization vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an attacker who sends specific packets in ce…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-22166

Published Jan 19, 2022

An Improper Validation of Specified Quantity in Input vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS allows an unauthenticated networked attacker…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-22163

Published Jan 19, 2022

An Improper Input Validation vulnerability in the Juniper DHCP daemon (jdhcpd) of Juniper Networks Junos OS allows an adjacent unauthenticated attacker to cause a crash of jdhcpd…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2022-22162

Published Jan 19, 2022

A Generation of Error Message Containing Sensitive Information vulnerability in the CLI of Juniper Networks Junos OS allows a locally authenticated attacker with low privileges to…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2022-22161

Published Jan 19, 2022

An Uncontrolled Resource Consumption vulnerability in the kernel of Juniper Networks Junos OS allows an unauthenticated network based attacker to cause 100% CPU load and the devic…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-22160

Published Jan 19, 2022

An Unchecked Error Condition vulnerability in the subscriber management daemon (smgd) of Juniper Networks Junos OS allows an unauthenticated adjacent attacker to cause a crash of…

CVSS 6.5 · Medium

CVE-2022-22159

Published Jan 19, 2022

A vulnerability in the NETISR network queue functionality of Juniper Networks Junos OS kernel allows an attacker to cause a Denial of Service (DoS) by sending crafted genuine pack…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-22157

Published Jan 19, 2022

A traffic classification vulnerability in Juniper Networks Junos OS on the SRX Series Services Gateways may allow an attacker to bypass Juniper Deep Packet Inspection (JDPI) rules…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2022-22156

Published Jan 19, 2022

An Improper Certificate Validation weakness in the Juniper Networks Junos OS allows an attacker to perform Person-in-the-Middle (PitM) attacks when a system script is fetched from…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-22154

Published Jan 19, 2022

In a Junos Fusion scenario an External Control of Critical State Data vulnerability in the Satellite Device (SD) control state machine of Juniper Networks Junos OS allows an attac…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-31386

Published Oct 19, 2021

A Protection Mechanism Failure vulnerability in the J-Web HTTP service of Juniper Networks Junos OS allows a remote unauthenticated attacker to perform Person-in-the-Middle (PitM)…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-31385

Published Oct 19, 2021

An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in J-Web of Juniper Networks Junos OS allows any low-privileged authenticated attac…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-31379

Published Oct 19, 2021

An Incorrect Behavior Order vulnerability in the MAP-E automatic tunneling mechanism of Juniper Networks Junos OS allows an attacker to send certain malformed IPv4 or IPv6 packets…

CVSS 7.5 · High

CVE-2021-31378

Published Oct 19, 2021

In broadband environments, including but not limited to Enhanced Subscriber Management, (CHAP, PPP, DHCP, etc.), on Juniper Networks Junos OS devices where RADIUS servers are conf…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-31377

Published Oct 19, 2021

An Incorrect Permission Assignment for Critical Resource vulnerability of a certain file in the filesystem of Junos OS allows a local authenticated attacker to cause routing proce…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 351-375 of 786 CVEsPage 15 of 32