Skip to main content

Vendor/product archive

juniper / junos CVEs

Beta · best-effort

786 CVEs tagged to juniper / junos32 Critical, 419 High, 333 Medium, 2 Low, 0 Unrated.

CVE-2021-0236

Published Apr 22, 2021

Due to an improper check for unusual or exceptional conditions in Juniper Networks Junos OS and Junos OS Evolved the Routing Protocol Daemon (RPD) service, upon receipt of a speci…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0234

Published Apr 22, 2021

Due to an improper Initialization vulnerability on Juniper Networks Junos OS QFX5100-96S devices with QFX 5e Series image installed, ddos-protection configuration changes will not…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0231

Published Apr 22, 2021

A path traversal vulnerability in the Juniper Networks SRX and vSRX Series may allow an authenticated J-web user to read sensitive system files. This issue affects Juniper Network…

CVSS 6.5 · Medium

CVE-2021-0229

Published Apr 22, 2021

An uncontrolled resource consumption vulnerability in Message Queue Telemetry Transport (MQTT) server of Juniper Networks Junos OS allows an attacker to cause MQTT server to crash…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0227

Published Apr 22, 2021

An improper restriction of operations within the bounds of a memory buffer vulnerability in Juniper Networks Junos OS J-Web on SRX Series devices allows an attacker to cause Denia…

CVSS 7.5 · High

CVE-2021-0224

Published Apr 22, 2021

A vulnerability in the handling of internal resources necessary to bring up a large number of Layer 2 broadband remote access subscriber (BRAS) nodes in Juniper Networks Junos OS…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0216

Published Apr 22, 2021

A vulnerability in Juniper Networks Junos OS running on the ACX5448 and ACX710 platforms may cause BFD sessions to flap when a high rate of transit ARP packets are received. This,…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0214

Published Apr 22, 2021

A vulnerability in the distributed or centralized periodic packet management daemon (PPMD) of Juniper Networks Junos OS may cause receipt of a malformed packet to crash and restar…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0223

Published Jan 15, 2021

A local privilege escalation vulnerability in telnetd.real of Juniper Networks Junos OS may allow a locally authenticated shell user to escalate privileges and execute arbitrary c…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0221

Published Jan 15, 2021

In an EVPN/VXLAN scenario, if an IRB interface with a virtual gateway address (VGA) is configured on a PE, a traffic loop may occur upon receipt of specific IP multicast traffic.…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0219

Published Jan 15, 2021

A command injection vulnerability in install package validation subsystem of Juniper Networks Junos OS that may allow a locally authenticated attacker with privileges to execute c…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0218

Published Jan 15, 2021

A command injection vulnerability in the license-check daemon of Juniper Networks Junos OS that may allow a locally authenticated attacker with low privileges to execute commands…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0217

Published Jan 15, 2021

A vulnerability in processing of certain DHCP packets from adjacent clients on EX Series and QFX Series switches running Juniper Networks Junos OS with DHCP local/relay server con…

CVSS 7.4 · High

CVE-2021-0215

Published Jan 15, 2021

On Juniper Networks Junos EX series, QFX Series, MX Series and SRX branch series devices, a memory leak occurs every time the 802.1X authenticator port interface flaps which can l…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0210

Published Jan 15, 2021

An Information Exposure vulnerability in J-Web of Juniper Networks Junos OS allows an unauthenticated attacker to elevate their privileges over the target system through opportuni…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0208

Published Jan 15, 2021

An improper input validation vulnerability in the Routing Protocol Daemon (RPD) service of Juniper Networks Junos OS allows an attacker to send a malformed RSVP packet when bidire…

CVSS 8.8 · High

CVE-2021-0207

Published Jan 15, 2021

An improper interpretation conflict of certain data between certain software components within the Juniper Networks Junos OS devices does not allow certain traffic to pass through…

CVSS 7.5 · High

CVE-2021-0206

Published Jan 15, 2021

A NULL Pointer Dereference vulnerability in Juniper Networks Junos OS allows an attacker to send a specific packet causing the packet forwarding engine (PFE) to crash and restart,…

CVSS 7.5 · High
Showing 451-475 of 786 CVEsPage 19 of 32