Vulnerability index

Browse CVEs

540 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2018-0007 An unauthenticated network-based attacker able to send a maliciously crafted LLDP packet to the local segment, through a local segment broadcast, may… Junos Mitigation only Fix from $2,3002018-01-10 HIGH 8.8 CVE-2018-0005 QFX and EX Series switches configured to drop traffic when the MAC move limit is exceeded will forward traffic instead of dropping traffic. This can … Junos Mitigation only Fix from $1,9502018-01-10 MEDIUM 6.5 CVE-2018-0004 A sustained sequence of different types of normal transit traffic can trigger a high CPU consumption denial of service condition in the Junos OS regi… Junos Mitigation only Fix from $1,6002018-01-10 MEDIUM 6.5 CVE-2018-0014 Juniper Networks ScreenOS devices do not pad Ethernet packets with zeros, and thus some packets can contain fragments of system memory or data from p… Screenos Mitigation only Fix from $1,6002018-01-10 MEDIUM 6.2 CVE-2018-0008 An unauthenticated root login may allow upon reboot when a commit script is used. A commit script allows a device administrator to execute certain in… Junos Mitigation only Fix from $1,6002018-01-10 CRITICAL 9.8 CVE-2017-10622EPSS 5% An authentication bypass vulnerability in Juniper Networks Junos Space Network Management Platform may allow a remote unauthenticated network based a… Junos Space Mitigation only Fix from $2,3002017-10-13 CRITICAL 9.8 CVE-2017-10615 A vulnerability in the pluggable authentication module (PAM) of Juniper Networks Junos OS may allow an unauthenticated network based attacker to pote… Junos Mitigation only Fix from $2,3002017-10-13 HIGH 8.8 CVE-2016-1261 J-Web does not validate certain input that may lead to cross-site request forgery (CSRF) issues or cause a denial of J-Web service (DoS). Junos Mitigation only Fix from $1,9502017-10-13 HIGH 7.8 CVE-2016-4922 Certain combinations of Junos OS CLI commands and arguments have been found to be exploitable in a way that can allow unauthorized access to the oper… Junos Mitigation only Fix from $1,9502017-10-13 HIGH 7.5 CVE-2016-4921 By flooding a Juniper Networks router running Junos OS with specially crafted IPv6 traffic, all available resources can be consumed, leading to the i… Junos Mitigation only Fix from $1,9502017-10-13 HIGH 7.5 CVE-2017-10607 Juniper Networks Junos OS 16.1R1, and services releases based off of 16.1R1, are vulnerable to the receipt of a crafted BGP Protocol Data Unit (PDU) … Junos Mitigation only Fix from $1,9502017-10-13 HIGH 7.5 CVE-2017-10608 Any Juniper Networks SRX series device with one or more ALGs enabled may experience a flowd crash when traffic is processed by the Sun/MS-RPC ALGs. T… Junos Mitigation only Fix from $1,9502017-10-13 HIGH 7.5 CVE-2017-10614 A vulnerability in telnetd service on Junos OS allows a remote attacker to cause a limited memory and/or CPU consumption denial of service attack. Th… Junos Mitigation only Fix from $1,9502017-10-13 HIGH 7.5 CVE-2017-10619 When Express Path (formerly known as service offloading) is configured on Juniper Networks SRX1400, SRX3400, SRX3600, SRX5400, SRX5600, SRX5800 in hi… Junos Mitigation only Fix from $1,9502017-10-13 HIGH 7.4 CVE-2017-10620 Juniper Networks Junos OS on SRX series devices do not verify the HTTPS server certificate before downloading anti-virus updates. This may allow a ma… Junos Mitigation only Fix from $1,9502017-10-13 MEDIUM 6.1 CVE-2016-4923 Insufficient cross site scripting protection in J-Web component in Juniper Networks Junos OS may potentially allow a remote unauthenticated user to i… Junos Mitigation only Fix from $1,6002017-10-13 MEDIUM 5.9 CVE-2017-10610 On SRX Series devices, a crafted ICMP packet embedded within a NAT64 IPv6 to IPv4 tunnel may cause the flowd process to crash. Repeated crashes of th… Junos Mitigation only Fix from $1,6002017-10-13 MEDIUM 5.9 CVE-2017-10611 If extended statistics are enabled via 'set chassis extended-statistics', when executing any operation that fetches interface statistics, including b… Junos Mitigation only Fix from $1,6002017-10-13 MEDIUM 5.9 CVE-2017-10618 When the 'bgp-error-tolerance' feature â€" designed to help mitigate remote session resets from malformed path attributes â€" is … Junos Mitigation only Fix from $1,6002017-10-13 MEDIUM 5.5 CVE-2016-4924 An incorrect permissions vulnerability in Juniper Networks Junos OS on vMX may allow local unprivileged users on a host system read access to vMX or … Junos Mitigation only Fix from $1,6002017-10-13 MEDIUM 5.5 CVE-2017-10613 A vulnerability in a specific loopback filter action command, processed in a specific logical order of operation, in a running configuration of Junip… Junos Mitigation only Fix from $1,6002017-10-13 MEDIUM 5.3 CVE-2017-10616 The ifmap service that comes bundled with Juniper Networks Contrail releases uses hard coded credentials. Affected releases are Contrail releases 2.2… Contrail Mitigation only Fix from $1,6002017-10-13 MEDIUM 5.3 CVE-2017-10621 A denial of service vulnerability in telnetd service on Juniper Networks Junos OS allows remote unauthenticated attackers to cause a denial of servic… Junos Mitigation only Fix from $1,6002017-10-13 CRITICAL 9.8 CVE-2017-2343 The Integrated User Firewall (UserFW) feature was introduced in Junos OS version 12.1X47-D10 on the Juniper SRX Series devices to provide simple inte… Junos Mitigation only Fix from $2,3002017-07-17 CRITICAL 9.8 CVE-2017-2345 On Junos OS devices with SNMP enabled, a network based attacker with unfiltered access to the RE can cause the Junos OS snmpd daemon to crash and res… Junos Mitigation only Fix from $2,3002017-07-17 HIGH 8.8 CVE-2017-2341 An insufficient authentication vulnerability on platforms where Junos OS instances are run in a virtualized environment, may allow unprivileged users… Junos Mitigation only Fix from $1,9502017-07-17 HIGH 8.8 CVE-2017-2349 A command injection vulnerability in the IDP feature of Juniper Networks Junos OS on SRX series devices potentially allows a user with login access t… Junos Mitigation only Fix from $1,9502017-07-17 HIGH 8.1 CVE-2017-2342 MACsec feature on Juniper Networks Junos OS 15.1X49 prior to 15.1X49-D100 on SRX300 series does not report errors when a secure link can not be estab… Junos Mitigation only Fix from $1,9502017-07-17 HIGH 7.8 CVE-2017-2344 A routine within an internal Junos OS sockets library is vulnerable to a buffer overflow. Malicious exploitation of this issue may lead to a denial o… Junos Mitigation only Fix from $1,9502017-07-17 HIGH 7.5 CVE-2017-2347 A denial of service vulnerability in rpd daemon of Juniper Networks Junos OS allows a malformed MPLS ping packet to crash the rpd daemon if MPLS OAM … Junos Mitigation only Fix from $1,9502017-07-17