VYPR

Vendor CVEs

Juniper Networks

All CVEs

1,117 total · sorted by risk
  • CVE-2020-1641MedJul 17, 2020
    risk 0.42cvss 6.5epss 0.00

    A Race Condition vulnerability in Juniper Networks Junos OS LLDP implementation allows an attacker to cause LLDP to crash leading to a Denial of Service (DoS). This issue occurs when crafted LLDP packets are received by the device from an adjacent device. Multiple LACP flaps…

  • CVE-2020-1625MedApr 8, 2020
    risk 0.42cvss 6.5epss 0.01

    The kernel memory usage represented as "temp" via 'show system virtual-memory' may constantly increase when Integrated Routing and Bridging (IRB) is configured with multiple underlay physical interfaces, and one interface flaps. This memory leak can affect running daemons…

  • CVE-2015-5361MedFeb 28, 2020
    risk 0.42cvss 6.5epss 0.00

    Background For regular, unencrypted FTP traffic, the FTP ALG can inspect the unencrypted control channel and open related sessions for the FTP data channel. These related sessions (gates) are specific to source and destination IPs and ports of client and server. The design…

  • CVE-2015-3006MedFeb 28, 2020
    risk 0.42cvss 6.5epss 0.01

    On the QFX3500 and QFX3600 platforms, the number of bytes collected from the RANDOM_INTERRUPT entropy source when the device boots up is insufficient, possibly leading to weak or duplicate SSH keys or self-signed SSL/TLS certificates. Entropy increases after the system has been…

  • CVE-2020-1611MedJan 15, 2020
    risk 0.42cvss 6.5epss 0.02

    A Local File Inclusion vulnerability in Juniper Networks Junos Space allows an attacker to view all files on the target when the device receives malicious HTTP packets. This issue affects: Juniper Networks Junos Space versions prior to 19.4R1.

  • CVE-2020-1604MedJan 15, 2020
    risk 0.42cvss 6.5epss 0.01

    On EX4300, EX4600, QFX3500, and QFX5100 Series, a vulnerability in the IP firewall filter component may cause the firewall filter evaluation of certain packets to fail. This issue only affects firewall filter evaluation of certain packets destined to the device Routing Engine…

  • CVE-2020-1600MedJan 15, 2020
    risk 0.42cvss 6.5epss 0.01

    In a Point-to-Multipoint (P2MP) Label Switched Path (LSP) scenario, an uncontrolled resource consumption vulnerability in the Routing Protocol Daemon (RPD) in Juniper Networks Junos OS allows a specific SNMP request to trigger an infinite loop causing a high CPU usage Denial of…

  • CVE-2019-0068MedOct 9, 2019
    risk 0.42cvss 6.5epss 0.01

    The SRX flowd process, responsible for packet forwarding, may crash and restart when processing specific multicast packets. By continuously sending the specific multicast packets, an attacker can repeatedly crash the flowd process causing a sustained Denial of Service. This…

  • CVE-2019-0067MedOct 9, 2019
    risk 0.42cvss 6.5epss 0.01

    Receipt of a specific link-local IPv6 packet destined to the RE may cause the system to crash and restart (vmcore). By continuously sending a specially crafted IPv6 packet, an attacker can repeatedly crash the system causing a prolonged Denial of Service (DoS). This issue…

  • CVE-2019-0063MedOct 9, 2019
    risk 0.42cvss 6.5epss 0.01

    When an MX Series Broadband Remote Access Server (BRAS) is configured as a Broadband Network Gateway (BNG) with DHCPv6 enabled, jdhcpd might crash when receiving a specific crafted DHCP response message on a subscriber interface. The daemon automatically restarts without…

  • CVE-2019-0051MedOct 9, 2019
    risk 0.42cvss 6.5epss 0.01

    SSL-Proxy feature on SRX devices fails to handle a hardware resource limitation which can be exploited by remote SSL/TLS servers to crash the flowd daemon. Repeated crashes of the flowd daemon can result in an extended denial of service condition. For this issue to occur,…

  • CVE-2019-1010232MedJul 22, 2019
    risk 0.42cvss 6.5epss 0.01

    Juniper juniper/libslax libslax latest version (as of commit 084ddf6ab4a55b59dfa9a53f9c5f14d192c4f8e5 Commits on Sep 1, 2018) is affected by: Buffer Overflow. The impact is: remote dos. The component is: slaxlexer.c:601(funtion:slaxGetInput). The attack vector is: ./slaxproc…

  • CVE-2019-0046MedJul 11, 2019
    risk 0.42cvss 6.5epss 0.01

    A vulnerability in the pfe-chassisd Chassis Manager (CMLC) daemon of Juniper Networks Junos OS allows an attacker to cause a Denial of Service (DoS) to the EX4300 when specific valid broadcast packets create a broadcast storm condition when received on the me0 interface of the…

  • CVE-2019-0038MedApr 10, 2019
    risk 0.42cvss 6.5epss 0.01

    Crafted packets destined to the management interface (fxp0) of an SRX340 or SRX345 services gateway may create a denial of service (DoS) condition due to buffer space exhaustion. This issue only affects the SRX340 and SRX345 services gateways. No other products or platforms are…

  • CVE-2019-0017MedJan 15, 2019
    risk 0.42cvss 6.5epss 0.01

    The Junos Space application, which allows Device Image files to be uploaded, has insufficient validity checking which may allow uploading of malicious images or scripts, or other content types. Affected releases are Juniper Networks Junos Space versions prior to 18.3R1.

  • CVE-2019-0016MedJan 15, 2019
    risk 0.42cvss 6.5epss 0.01

    A malicious authenticated user may be able to delete a device from the Junos Space database without the necessary privileges through crafted Ajax interactions obtained from another legitimate delete action performed by another administrative user. Affected releases are Juniper…

  • CVE-2019-0013MedJan 15, 2019
    risk 0.42cvss 6.5epss 0.02

    The routing protocol daemon (RPD) process will crash and restart when a specific invalid IPv4 PIM Join packet is received. While RPD restarts after a crash, repeated crashes can result in an extended Denial of Service (DoS) condition. This issue only affects IPv4 PIM. IPv6 PIM…

  • CVE-2019-0011MedJan 15, 2019
    risk 0.42cvss 6.5epss 0.01

    The Junos OS kernel crashes after processing a specific incoming packet to the out of band management interface (such as fxp0, me0, em0, vme0) destined for another address. By continuously sending this type of packet, an attacker can repeatedly crash the kernel causing a…

  • CVE-2018-0063MedOct 10, 2018
    risk 0.42cvss 6.5epss 0.01

    A vulnerability in the IP next-hop index database in Junos OS 17.3R3 may allow a flood of ARP requests, sent to the management interface, to exhaust the private Internal routing interfaces (IRIs) next-hop limit. Once the IRI next-hop database is full, no further next hops can be…

  • CVE-2018-0056MedOct 10, 2018
    risk 0.42cvss 6.5epss 0.01

    If a duplicate MAC address is learned by two different interfaces on an MX Series device, the MAC address learning function correctly flaps between the interfaces. However, the Layer 2 Address Learning Daemon (L2ALD) daemon might crash when attempting to delete the duplicate MAC…

  • CVE-2018-0055MedOct 10, 2018
    risk 0.42cvss 6.5epss 0.01

    Receipt of a specially crafted DHCPv6 message destined to a Junos OS device configured as a DHCP server in a Broadband Edge (BBE) environment may result in a jdhcpd daemon crash. The daemon automatically restarts without intervention, but a continuous receipt of crafted DHCPv6…

  • CVE-2018-0054MedOct 10, 2018
    risk 0.42cvss 6.5epss 0.01

    On QFX5000 Series and EX4600 switches, a high rate of Ethernet pause frames or an ARP packet storm received on the management interface (fxp0) can cause egress interface congestion, resulting in routing protocol packet drops, such as BGP, leading to peering flaps. The following…

  • CVE-2018-15505HigAug 18, 2018
    risk 0.42cvss 7.5epss 0.02

    An issue was discovered in Embedthis GoAhead before 4.0.1 and Appweb before 7.0.2. An HTTP POST request with a specially crafted "Host" header field may cause a NULL pointer dereference and thus cause a denial of service, as demonstrated by the lack of a trailing ']' character…

  • CVE-2018-15504HigAug 18, 2018
    risk 0.42cvss 7.5epss 0.03

    An issue was discovered in Embedthis GoAhead before 4.0.1 and Appweb before 7.0.2. The server mishandles some HTTP request fields associated with time, which results in a NULL pointer dereference, as demonstrated by If-Modified-Since or If-Unmodified-Since with a month greater…

  • CVE-2018-0039MedJul 11, 2018
    risk 0.42cvss 6.5epss 0.01

    Juniper Networks Contrail Service Orchestration releases prior to 4.0.0 have Grafana service enabled by default with hardcoded credentials. These credentials allow network based attackers unauthorized access to information stored in Grafana or exploit other weaknesses or…

  • CVE-2018-0013MedJan 10, 2018
    risk 0.42cvss 6.5epss 0.01

    A local file inclusion vulnerability in Juniper Networks Junos Space Network Management Platform may allow an authenticated user to retrieve files from the system.

  • CVE-2018-0010MedJan 10, 2018
    risk 0.42cvss 6.5epss 0.01

    A vulnerability in the Juniper Networks Junos Space Security Director allows a user who does not have SSH access to a device to reuse the URL that was created for another user to perform SSH access. Affected releases are all versions of Junos Space Security Director prior to…

  • CVE-2018-0006MedJan 10, 2018
    risk 0.42cvss 6.5epss 0.01

    A high rate of VLAN authentication attempts sent from an adjacent host on the local broadcast domain can trigger high memory utilization by the BBE subscriber management daemon (bbe-smgd), and lead to a denial of service condition. The issue was caused by attempting to process…

  • CVE-2018-0004MedJan 10, 2018
    risk 0.42cvss 6.5epss 0.01

    A sustained sequence of different types of normal transit traffic can trigger a high CPU consumption denial of service condition in the Junos OS register and schedule software interrupt handler subsystem when a specific command is issued to the device. This affects one or more…

  • CVE-2018-0003MedJan 10, 2018
    risk 0.42cvss 6.5epss 0.01

    A specially crafted MPLS packet received or processed by the system, on an interface configured with MPLS, will store information in the system memory. Subsequently, if this stored information is accessed, this may result in a kernel crash leading to a denial of service.…

  • CVE-2017-10611MedOct 13, 2017
    risk 0.42cvss 6.5epss 0.01

    If extended statistics are enabled via 'set chassis extended-statistics', when executing any operation that fetches interface statistics, including but not limited to SNMP GET requests, the pfem process or the FPC may crash and restart. Repeated crashes of PFE processing can…

  • CVE-2017-2347MedJul 17, 2017
    risk 0.42cvss 6.5epss 0.02

    A denial of service vulnerability in rpd daemon of Juniper Networks Junos OS allows a malformed MPLS ping packet to crash the rpd daemon if MPLS OAM is configured. Repeated crashes of the rpd daemon can result in an extended denial of service condition for the device. The…

  • CVE-2017-2308MedMay 30, 2017
    risk 0.42cvss 6.5epss 0.01

    An XML External Entity Injection vulnerability in Juniper Networks Junos Space versions prior to 16.1R1 may allow an authenticated user to read arbitrary files on the device.

  • CVE-2017-2333MedApr 24, 2017
    risk 0.42cvss 6.5epss 0.01

    A persistent denial of service vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pack 1 may allow a malicious, network-based, authenticated attacker to consume enough system resources to cause a persistent denial of service by…

  • CVE-2017-2326MedApr 24, 2017
    risk 0.42cvss 6.5epss 0.01

    An information disclosure vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pack 1 may allow an unprivileged, authenticated, network-based attacker to replicate the underlying Junos OS VM and all data it maintains to their local…

  • CVE-2017-2325MedApr 24, 2017
    risk 0.42cvss 6.5epss 0.01

    A buffer overflow vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pack 1 may allow an authenticated malicious user to cause a buffer overflow leading to a denial of service.

  • CVE-2017-2318MedApr 24, 2017
    risk 0.42cvss 6.5epss 0.01

    A vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pack 1 may allow an authenticated malicious user to read log files which will compromise the integrity of the system, or provide elevation of privileges.

  • CVE-2017-2316MedApr 24, 2017
    risk 0.42cvss 6.5epss 0.00

    A buffer overflow vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pack 1 may allow an authenticated malicious user to cause a buffer overflow leading to a denial of service.

  • CVE-2017-2312MedApr 24, 2017
    risk 0.42cvss 6.5epss 0.02

    On Juniper Networks devices running Junos OS affected versions and with LDP enabled, a specific LDP packet destined to the RE (Routing Engine) will consume a small amount of the memory allocated for the rpd (routing protocol daemon) process. Over time, repeatedly receiving this…

  • CVE-2016-4931MedMar 20, 2017
    risk 0.42cvss 6.5epss 0.01

    XML entity injection in Junos Space before 15.2R2 allows attackers to cause a denial of service.

  • CVE-2016-1280MedSep 9, 2016
    risk 0.42cvss 6.5epss 0.01

    PKId in Juniper Junos OS before 12.1X44-D52, 12.1X46 before 12.1X46-D37, 12.1X47 before 12.1X47-D30, 12.3 before 12.3R12, 12.3X48 before 12.3X48-D20, 13.3 before 13.3R10, 14.1 before 14.1R8, 14.1X53 before 14.1X53-D40, 14.2 before 14.2R7, 15.1 before 15.1R4, 15.1X49 before…

  • CVE-2016-1275MedSep 9, 2016
    risk 0.42cvss 6.5epss 0.01

    Juniper Junos OS before 13.3R9, 14.1R6 before 14.1R6-S1, and 14.1 before 14.1R7, when configured with VPLS routing-instances, allows remote attackers to obtain sensitive mbuf information by injecting a flood of Ethernet frames with IPv6 MAC addresses directly into a connected…

  • CVE-2025-21590MedKEVMar 12, 2025
    risk 0.41cvss 4.4epss 0.02

    An Improper Isolation or Compartmentalization vulnerability in the kernel of Juniper Networks Junos OS allows a local attacker with high privileges to compromise the integrity of the device. A local attacker with access to the shell is able to inject arbitrary code which can…

  • CVE-2024-39532MedJul 11, 2024
    risk 0.41cvss 6.3epss 0.00

    An Insertion of Sensitive Information into Log File vulnerability in Juniper Networks Junos OS and Junos OS Evolved allows a local, authenticated attacker with high privileges to access sensitive information. When another user performs a specific operation, sensitive…

  • CVE-2020-1669MedOct 16, 2020
    risk 0.41cvss 6.3epss 0.00

    The Juniper Device Manager (JDM) container, used by the disaggregated Junos OS architecture on Juniper Networks NFX350 Series devices, stores password hashes in the world-readable file /etc/passwd. This is not a security best current practice as it can allow an attacker with…

  • CVE-2020-1618MedApr 8, 2020
    risk 0.41cvss 6.3epss 0.00

    On Juniper Networks EX and QFX Series, an authentication bypass vulnerability may allow a user connected to the console port to login as root without any password. This issue might only occur in certain scenarios: • At the first reboot after performing device factory reset…

  • CVE-2026-21904MedApr 9, 2026
    risk 0.40cvss 6.1epss 0.00

    An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the list filter field that, when visited by another user, enables the attacker to execute commands…

  • CVE-2025-52987MedJan 15, 2026
    risk 0.40cvss 6.1epss 0.00

    A clickjacking vulnerability exists in the web portal of Juniper Networks Paragon Automation (Pathfinder, Planner, Insights) due to the application's failure to set appropriate X-Frame-Options and X-Content-Type HTTP headers. This vulnerability allows an attacker to trick users…

  • CVE-2025-60009MedOct 9, 2025
    risk 0.40cvss 6.1epss 0.00

    An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the CLI Configlet page that, when visited by another user, enables the attacker to execute…

  • CVE-2025-60002MedOct 9, 2025
    risk 0.40cvss 6.1epss 0.00

    An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Juniper Networks Junos Space allows an attacker to inject script tags in the Template Definitions page that, when visited by another user, enables the attacker to execute…

Page 14 of 23