Skip to main content

Vendor archive

juniper CVEs

Beta · best-effort

1,105 CVEs tagged to vendor juniper65 Critical, 543 High, 489 Medium, 8 Low, 0 Unrated.

CVE-2021-31351

Published Oct 19, 2021

An Improper Check for Unusual or Exceptional Conditions in packet processing on the MS-MPC/MS-MIC utilized by Juniper Networks Junos OS allows a malicious attacker to send a speci…

CVSS 7.5 · High

CVE-2021-31350

Published Oct 19, 2021

An Improper Privilege Management vulnerability in the gRPC framework, used by the Juniper Extension Toolkit (JET) API on Juniper Networks Junos OS and Junos OS Evolved, allows a n…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0299

Published Oct 19, 2021

An Improper Handling of Exceptional Conditions vulnerability in the processing of a transit or directly received malformed IPv6 packet in Juniper Networks Junos OS results in a ke…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0297

Published Oct 19, 2021

A vulnerability in the processing of TCP MD5 authentication in Juniper Networks Junos OS Evolved may allow a BGP or LDP session configured with MD5 authentication to succeed, even…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0296

Published Oct 19, 2021

The Juniper Networks CTPView server is not enforcing HTTP Strict Transport Security (HSTS). HSTS is an optional response header which allows servers to indicate that content from…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2021-39534

Published Sep 20, 2021

An issue was discovered in libslax through v0.22.1. slaxIsCommentStart() in slaxlexer.c has a heap-based buffer overflow.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-39533

Published Sep 20, 2021

An issue was discovered in libslax through v0.22.1. slaxLexer() in slaxlexer.c has a heap-based buffer overflow.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-39532

Published Sep 20, 2021

An issue was discovered in libslax through v0.22.1. A NULL pointer dereference exists in the function slaxLexer() located in slaxlexer.c. It allows an attacker to cause Denial of…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-39531

Published Sep 20, 2021

An issue was discovered in libslax through v0.22.1. slaxLexer() in slaxlexer.c has a stack-based buffer overflow.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0284

Published Aug 17, 2021

A buffer overflow vulnerability in the TCP/IP stack of Juniper Networks Junos OS allows an attacker to send specific sequences of packets to the device thereby causing a Denial of…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0293

Published Jul 15, 2021

A vulnerability in Juniper Networks Junos OS caused by Missing Release of Memory after Effective Lifetime leads to a memory leak each time the CLI command 'show system connections…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0292

Published Jul 15, 2021

An Uncontrolled Resource Consumption vulnerability in the ARP daemon (arpd) and Network Discovery Protocol (ndp) process of Juniper Networks Junos OS Evolved allows a malicious at…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0287

Published Jul 15, 2021

In a Segment Routing ISIS (SR-ISIS)/MPLS environment, on Juniper Networks Junos OS and Junos OS Evolved devices, configured with ISIS Flexible Algorithm for Segment Routing and se…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0286

Published Jul 15, 2021

A vulnerability in the handling of exceptional conditions in Juniper Networks Junos OS Evolved (EVO) allows an attacker to send specially crafted packets to the device, causing th…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0283

Published Jul 15, 2021

A buffer overflow vulnerability in the TCP/IP stack of Juniper Networks Junos OS allows an attacker to send specific sequences of packets to the device thereby causing a Denial of…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0282

Published Jul 15, 2021

On Juniper Networks Junos OS devices with Multipath or add-path feature enabled, processing a specific BGP UPDATE can lead to a routing process daemon (RPD) crash and restart, cau…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 526-550 of 1,105 CVEsPage 22 of 45