Vulnerability index

Browse CVEs

540 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Junos CRITICAL 9.8
CVE-2018-0007

An unauthenticated network-based attacker able to send a maliciously crafted LLDP packet to the local segment, through a local segment broadcast, may…

Mitigation only
Fix from $2,300 2018-01-10
Junos HIGH 8.8
CVE-2018-0005

QFX and EX Series switches configured to drop traffic when the MAC move limit is exceeded will forward traffic instead of dropping traffic. This can …

Mitigation only
Fix from $1,950 2018-01-10
Junos MEDIUM 6.5
CVE-2018-0004

A sustained sequence of different types of normal transit traffic can trigger a high CPU consumption denial of service condition in the Junos OS regi…

Mitigation only
Fix from $1,600 2018-01-10
Screenos MEDIUM 6.5
CVE-2018-0014

Juniper Networks ScreenOS devices do not pad Ethernet packets with zeros, and thus some packets can contain fragments of system memory or data from p…

Mitigation only
Fix from $1,600 2018-01-10
Junos MEDIUM 6.2
CVE-2018-0008

An unauthenticated root login may allow upon reboot when a commit script is used. A commit script allows a device administrator to execute certain in…

Mitigation only
Fix from $1,600 2018-01-10
Junos Space CRITICAL 9.8
CVE-2017-10622EPSS 5%

An authentication bypass vulnerability in Juniper Networks Junos Space Network Management Platform may allow a remote unauthenticated network based a…

Mitigation only
Fix from $2,300 2017-10-13
Junos CRITICAL 9.8
CVE-2017-10615

A vulnerability in the pluggable authentication module (PAM) of Juniper Networks Junos OS may allow an unauthenticated network based attacker to pote…

Mitigation only
Fix from $2,300 2017-10-13
Junos HIGH 8.8
CVE-2016-1261

J-Web does not validate certain input that may lead to cross-site request forgery (CSRF) issues or cause a denial of J-Web service (DoS).

Mitigation only
Fix from $1,950 2017-10-13
Junos HIGH 7.8
CVE-2016-4922

Certain combinations of Junos OS CLI commands and arguments have been found to be exploitable in a way that can allow unauthorized access to the oper…

Mitigation only
Fix from $1,950 2017-10-13
Junos HIGH 7.5
CVE-2016-4921

By flooding a Juniper Networks router running Junos OS with specially crafted IPv6 traffic, all available resources can be consumed, leading to the i…

Mitigation only
Fix from $1,950 2017-10-13
Junos HIGH 7.5
CVE-2017-10607

Juniper Networks Junos OS 16.1R1, and services releases based off of 16.1R1, are vulnerable to the receipt of a crafted BGP Protocol Data Unit (PDU) …

Mitigation only
Fix from $1,950 2017-10-13
Junos HIGH 7.5
CVE-2017-10608

Any Juniper Networks SRX series device with one or more ALGs enabled may experience a flowd crash when traffic is processed by the Sun/MS-RPC ALGs. T…

Mitigation only
Fix from $1,950 2017-10-13
Junos HIGH 7.5
CVE-2017-10614

A vulnerability in telnetd service on Junos OS allows a remote attacker to cause a limited memory and/or CPU consumption denial of service attack. Th…

Mitigation only
Fix from $1,950 2017-10-13
Junos HIGH 7.5
CVE-2017-10619

When Express Path (formerly known as service offloading) is configured on Juniper Networks SRX1400, SRX3400, SRX3600, SRX5400, SRX5600, SRX5800 in hi…

Mitigation only
Fix from $1,950 2017-10-13
Junos HIGH 7.4
CVE-2017-10620

Juniper Networks Junos OS on SRX series devices do not verify the HTTPS server certificate before downloading anti-virus updates. This may allow a ma…

Mitigation only
Fix from $1,950 2017-10-13
Junos MEDIUM 6.1
CVE-2016-4923

Insufficient cross site scripting protection in J-Web component in Juniper Networks Junos OS may potentially allow a remote unauthenticated user to i…

Mitigation only
Fix from $1,600 2017-10-13
Junos MEDIUM 5.9
CVE-2017-10610

On SRX Series devices, a crafted ICMP packet embedded within a NAT64 IPv6 to IPv4 tunnel may cause the flowd process to crash. Repeated crashes of th…

Mitigation only
Fix from $1,600 2017-10-13
Junos MEDIUM 5.9
CVE-2017-10611

If extended statistics are enabled via 'set chassis extended-statistics', when executing any operation that fetches interface statistics, including b…

Mitigation only
Fix from $1,600 2017-10-13
Junos MEDIUM 5.9
CVE-2017-10618

When the 'bgp-error-tolerance' feature â€" designed to help mitigate remote session resets from malformed path attributes â€" is …

Mitigation only
Fix from $1,600 2017-10-13
Junos MEDIUM 5.5
CVE-2016-4924

An incorrect permissions vulnerability in Juniper Networks Junos OS on vMX may allow local unprivileged users on a host system read access to vMX or …

Mitigation only
Fix from $1,600 2017-10-13
Junos MEDIUM 5.5
CVE-2017-10613

A vulnerability in a specific loopback filter action command, processed in a specific logical order of operation, in a running configuration of Junip…

Mitigation only
Fix from $1,600 2017-10-13
Contrail MEDIUM 5.3
CVE-2017-10616

The ifmap service that comes bundled with Juniper Networks Contrail releases uses hard coded credentials. Affected releases are Contrail releases 2.2…

Mitigation only
Fix from $1,600 2017-10-13
Junos MEDIUM 5.3
CVE-2017-10621

A denial of service vulnerability in telnetd service on Juniper Networks Junos OS allows remote unauthenticated attackers to cause a denial of servic…

Mitigation only
Fix from $1,600 2017-10-13
Junos CRITICAL 9.8
CVE-2017-2343

The Integrated User Firewall (UserFW) feature was introduced in Junos OS version 12.1X47-D10 on the Juniper SRX Series devices to provide simple inte…

Mitigation only
Fix from $2,300 2017-07-17
Junos CRITICAL 9.8
CVE-2017-2345

On Junos OS devices with SNMP enabled, a network based attacker with unfiltered access to the RE can cause the Junos OS snmpd daemon to crash and res…

Mitigation only
Fix from $2,300 2017-07-17
Junos HIGH 8.8
CVE-2017-2341

An insufficient authentication vulnerability on platforms where Junos OS instances are run in a virtualized environment, may allow unprivileged users…

Mitigation only
Fix from $1,950 2017-07-17
Junos HIGH 8.8
CVE-2017-2349

A command injection vulnerability in the IDP feature of Juniper Networks Junos OS on SRX series devices potentially allows a user with login access t…

Mitigation only
Fix from $1,950 2017-07-17
Junos HIGH 8.1
CVE-2017-2342

MACsec feature on Juniper Networks Junos OS 15.1X49 prior to 15.1X49-D100 on SRX300 series does not report errors when a secure link can not be estab…

Mitigation only
Fix from $1,950 2017-07-17
Junos HIGH 7.8
CVE-2017-2344

A routine within an internal Junos OS sockets library is vulnerable to a buffer overflow. Malicious exploitation of this issue may lead to a denial o…

Mitigation only
Fix from $1,950 2017-07-17
Junos HIGH 7.5
CVE-2017-2347

A denial of service vulnerability in rpd daemon of Juniper Networks Junos OS allows a malformed MPLS ping packet to crash the rpd daemon if MPLS OAM …

Mitigation only
Fix from $1,950 2017-07-17