Skip to main content

Vendor archive

juniper CVEs

Beta · best-effort

1,105 CVEs tagged to vendor juniper65 Critical, 543 High, 489 Medium, 8 Low, 0 Unrated.

CVE-2021-0255

Published Apr 22, 2021

A local privilege escalation vulnerability in ethtraceroute of Juniper Networks Junos OS may allow a locally authenticated user with shell access to escalate privileges and write…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0254

Published Apr 22, 2021

A buffer size validation vulnerability in the overlayd service of Juniper Networks Junos OS may allow an unauthenticated remote attacker to send specially crafted packets to the d…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2021-0251

Published Apr 22, 2021

A NULL Pointer Dereference vulnerability in the Captive Portal Content Delivery (CPCD) services daemon (cpcd) of Juniper Networks Junos OS on MX Series with MS-PIC, MS-SPC3, MS-MI…

CVSS 8.6 · High

CVE-2021-0250

Published Apr 22, 2021

In segment routing traffic engineering (SRTE) environments where the BGP Monitoring Protocol (BMP) feature is enable, a vulnerability in the Routing Protocol Daemon (RPD) process…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0249

Published Apr 22, 2021

On SRX Series devices configured with UTM services a buffer overflow vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS may allow an attacker to arbi…

CVSS 8.1 · High

CVE-2021-0247

Published Apr 22, 2021

A Race Condition (Concurrent Execution using Shared Resource with Improper Synchronization) vulnerability in the firewall process (dfwd) of Juniper Networks Junos OS allows an att…

CVSS 5.1 · Medium

CVE-2021-0245

Published Apr 22, 2021

A Use of Hard-coded Credentials vulnerability in Juniper Networks Junos OS on Junos Fusion satellite devices allows an attacker who is local to the device to elevate their privile…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0243

Published Apr 22, 2021

Improper Handling of Unexpected Data in the firewall policer of Juniper Networks Junos OS on EX4300 switches allows matching traffic to exceed set policer limits, possibly leading…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0242

Published Apr 22, 2021

A vulnerability due to the improper handling of direct memory access (DMA) buffers on EX4300 switches on Juniper Networks Junos OS allows an attacker sending specific unicast fram…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0241

Published Apr 22, 2021

On Juniper Networks Junos OS platforms configured as DHCPv6 local server or DHCPv6 Relay Agent, Juniper Networks Dynamic Host Configuration Protocol Daemon (JDHCPD) process might…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0240

Published Apr 22, 2021

On Juniper Networks Junos OS platforms configured as DHCPv6 local server or DHCPv6 Relay Agent, the Juniper Networks Dynamic Host Configuration Protocol Daemon (JDHCPD) process mi…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0239

Published Apr 22, 2021

In Juniper Networks Junos OS Evolved, receipt of a stream of specific genuine Layer 2 frames may cause the Advanced Forwarding Toolkit (AFT) manager process (Evo-aftmand), respons…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0238

Published Apr 22, 2021

When a MX Series is configured as a Broadband Network Gateway (BNG) based on Layer 2 Tunneling Protocol (L2TP), executing certain CLI command may cause the system to run out of di…

CVSS 5.5 · Medium

CVE-2021-0236

Published Apr 22, 2021

Due to an improper check for unusual or exceptional conditions in Juniper Networks Junos OS and Junos OS Evolved the Routing Protocol Daemon (RPD) service, upon receipt of a speci…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0234

Published Apr 22, 2021

Due to an improper Initialization vulnerability on Juniper Networks Junos OS QFX5100-96S devices with QFX 5e Series image installed, ddos-protection configuration changes will not…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-0231

Published Apr 22, 2021

A path traversal vulnerability in the Juniper Networks SRX and vSRX Series may allow an authenticated J-web user to read sensitive system files. This issue affects Juniper Network…

CVSS 6.5 · Medium
Showing 576-600 of 1,105 CVEsPage 24 of 45