Skip to main content

Vendor/product archive

juniper / junos CVEs

Beta · best-effort

786 CVEs tagged to juniper / junos32 Critical, 419 High, 333 Medium, 2 Low, 0 Unrated.

CVE-2021-31375

Published Oct 19, 2021

An Improper Input Validation vulnerability in routing process daemon (RPD) of Juniper Networks Junos OS devices configured with BGP origin validation using Resource Public Key Inf…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2021-31374

Published Oct 19, 2021

On Juniper Networks Junos OS and Junos OS Evolved devices processing a specially crafted BGP UPDATE or KEEPALIVE message can lead to a routing process daemon (RPD) crash and resta…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-31372

Published Oct 19, 2021

An Improper Input Validation vulnerability in J-Web of Juniper Networks Junos OS allows a locally authenticated J-Web attacker to escalate their privileges to root over the target…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-31370

Published Oct 19, 2021

An Incomplete List of Disallowed Inputs vulnerability in Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on QFX5000 Series and EX4600 Series allows an adjacent unauthe…

CVSS 6.5 · Medium

CVE-2021-31369

Published Oct 19, 2021

On MX Series platforms with MS-MPC/MS-MIC, an Allocation of Resources Without Limits or Throttling vulnerability in Juniper Networks Junos OS allows an unauthenticated network att…

CVSS 5.3 · Medium

CVE-2021-31366

Published Oct 19, 2021

An Unchecked Return Value vulnerability in the authd (authentication daemon) of Juniper Networks Junos OS on MX Series configured for subscriber management / BBE allows an adjacen…

CVSS 6.5 · Medium

CVE-2021-31364

Published Oct 19, 2021

An Improper Check for Unusual or Exceptional Conditions vulnerability combined with a Race Condition in the flow daemon (flowd) of Juniper Networks Junos OS on SRX300 Series, SRX5…

CVSS 5.9 · Medium

CVE-2021-31363

Published Oct 19, 2021

In an MPLS P2MP environment a Loop with Unreachable Exit Condition vulnerability in the routing protocol daemon (RPD) of Juniper Networks Junos OS and Junos OS Evolved allows an u…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-31362

Published Oct 19, 2021

A Protection Mechanism Failure vulnerability in RPD (routing protocol daemon) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent unauthenticated attacker to caus…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-31355

Published Oct 19, 2021

A persistent cross-site scripting (XSS) vulnerability in the captive portal graphical user interface of Juniper Networks Junos OS may allow a remote authenticated user to inject w…

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2021-31354

Published Oct 19, 2021

An Out Of Bounds (OOB) access vulnerability in the handling of responses by a Juniper Agile License (JAL) Client in Juniper Networks Junos OS and Junos OS Evolved, configured in N…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2021-31353

Published Oct 19, 2021

An Improper Handling of Exceptional Conditions vulnerability in Juniper Networks Junos OS and Junos OS Evolved allows an attacker to inject a specific BGP update, causing the rout…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-31351

Published Oct 19, 2021

An Improper Check for Unusual or Exceptional Conditions in packet processing on the MS-MPC/MS-MIC utilized by Juniper Networks Junos OS allows a malicious attacker to send a speci…

CVSS 7.5 · High

CVE-2021-31350

Published Oct 19, 2021

An Improper Privilege Management vulnerability in the gRPC framework, used by the Juniper Extension Toolkit (JET) API on Juniper Networks Junos OS and Junos OS Evolved, allows a n…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0299

Published Oct 19, 2021

An Improper Handling of Exceptional Conditions vulnerability in the processing of a transit or directly received malformed IPv6 packet in Juniper Networks Junos OS results in a ke…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0284

Published Aug 17, 2021

A buffer overflow vulnerability in the TCP/IP stack of Juniper Networks Junos OS allows an attacker to send specific sequences of packets to the device thereby causing a Denial of…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 376-400 of 786 CVEsPage 16 of 32