Skip to main content

Vendor/product archive

juniper / srx300 CVEs

Beta · best-effort

98 CVEs tagged to juniper / srx3002 Critical, 69 High, 27 Medium, 0 Low, 0 Unrated.

CVE-2019-0015

Published Jan 15, 2019

A vulnerability in the SRX Series Service Gateway allows deleted dynamic VPN users to establish dynamic VPN connections until the device is rebooted. A deleted dynamic VPN connect…

CVSS 5.4 · Medium

CVE-2018-0049

Published Oct 10, 2018

A NULL Pointer Dereference vulnerability in Juniper Networks Junos OS allows an attacker to cause the Junos OS kernel to crash. Continued receipt of this specifically crafted mali…

CVSS 7.5 · High
evidence mentions
3
Buzz score
21.9

CVE-2018-0025

Published Jul 11, 2018

When an SRX Series device is configured to use HTTP/HTTPS pass-through authentication services, a client sending authentication credentials in the initial HTTP/HTTPS session is at…

CVSS 6.1 · Medium

CVE-2018-0018

Published Apr 11, 2018

On SRX Series devices during compilation of IDP policies, an attacker sending specially crafted packets may be able to bypass firewall rules, leading to information disclosure whi…

CVSS 7.5 · High

CVE-2018-0009

Published Jan 10, 2018

On Juniper Networks SRX series devices, firewall rules configured to match custom application UUIDs starting with zeros can match all TCP traffic. Due to this issue, traffic that…

CVSS 5.4 · Medium

CVE-2017-10620

Published Oct 13, 2017

Juniper Networks Junos OS on SRX series devices do not verify the HTTPS server certificate before downloading anti-virus updates. This may allow a man-in-the-middle attacker to in…

CVSS 7.4 · High

CVE-2017-2342

Published Jul 17, 2017

MACsec feature on Juniper Networks Junos OS 15.1X49 prior to 15.1X49-D100 on SRX300 series does not report errors when a secure link can not be established. It falls back to an un…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort
Showing 76-98 of 98 CVEsPage 4 of 4