Skip to main content

Vendor/product archive

juniper / junos CVEs

Beta · best-effort

786 CVEs tagged to juniper / junos32 Critical, 419 High, 333 Medium, 2 Low, 0 Unrated.

CVE-2021-0262

Published Apr 22, 2021

Through routine static code analysis of the Juniper Networks Junos OS software codebase, the Secure Development Life Cycle team identified a Use After Free vulnerability in PFE pa…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0260

Published Apr 22, 2021

An improper authorization vulnerability in the Simple Network Management Protocol daemon (snmpd) service of Juniper Networks Junos OS leads an unauthenticated attacker being able…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0258

Published Apr 22, 2021

A vulnerability in the forwarding of transit TCPv6 packets received on the Ethernet management interface of Juniper Networks Junos OS allows an attacker to trigger a kernel panic,…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0257

Published Apr 22, 2021

On Juniper Networks MX Series and EX9200 Series platforms with Trio-based MPCs (Modular Port Concentrators) where Integrated Routing and Bridging (IRB) interfaces are configured a…

CVSS 6.5 · Medium

CVE-2021-0256

Published Apr 22, 2021

A sensitive information disclosure vulnerability in the mosquitto message broker of Juniper Networks Junos OS may allow a locally authenticated user with shell access the ability…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0255

Published Apr 22, 2021

A local privilege escalation vulnerability in ethtraceroute of Juniper Networks Junos OS may allow a locally authenticated user with shell access to escalate privileges and write…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0254

Published Apr 22, 2021

A buffer size validation vulnerability in the overlayd service of Juniper Networks Junos OS may allow an unauthenticated remote attacker to send specially crafted packets to the d…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2021-0251

Published Apr 22, 2021

A NULL Pointer Dereference vulnerability in the Captive Portal Content Delivery (CPCD) services daemon (cpcd) of Juniper Networks Junos OS on MX Series with MS-PIC, MS-SPC3, MS-MI…

CVSS 8.6 · High

CVE-2021-0250

Published Apr 22, 2021

In segment routing traffic engineering (SRTE) environments where the BGP Monitoring Protocol (BMP) feature is enable, a vulnerability in the Routing Protocol Daemon (RPD) process…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0249

Published Apr 22, 2021

On SRX Series devices configured with UTM services a buffer overflow vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS may allow an attacker to arbi…

CVSS 8.1 · High

CVE-2021-0247

Published Apr 22, 2021

A Race Condition (Concurrent Execution using Shared Resource with Improper Synchronization) vulnerability in the firewall process (dfwd) of Juniper Networks Junos OS allows an att…

CVSS 5.1 · Medium

CVE-2021-0245

Published Apr 22, 2021

A Use of Hard-coded Credentials vulnerability in Juniper Networks Junos OS on Junos Fusion satellite devices allows an attacker who is local to the device to elevate their privile…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0243

Published Apr 22, 2021

Improper Handling of Unexpected Data in the firewall policer of Juniper Networks Junos OS on EX4300 switches allows matching traffic to exceed set policer limits, possibly leading…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0242

Published Apr 22, 2021

A vulnerability due to the improper handling of direct memory access (DMA) buffers on EX4300 switches on Juniper Networks Junos OS allows an attacker sending specific unicast fram…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0241

Published Apr 22, 2021

On Juniper Networks Junos OS platforms configured as DHCPv6 local server or DHCPv6 Relay Agent, Juniper Networks Dynamic Host Configuration Protocol Daemon (JDHCPD) process might…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0240

Published Apr 22, 2021

On Juniper Networks Junos OS platforms configured as DHCPv6 local server or DHCPv6 Relay Agent, the Juniper Networks Dynamic Host Configuration Protocol Daemon (JDHCPD) process mi…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0238

Published Apr 22, 2021

When a MX Series is configured as a Broadband Network Gateway (BNG) based on Layer 2 Tunneling Protocol (L2TP), executing certain CLI command may cause the system to run out of di…

CVSS 5.5 · Medium
Showing 426-450 of 786 CVEsPage 18 of 32