Vulnerability index

Browse CVEs

1,019 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Junos HIGH 8.8
CVE-2021-31385

An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in J-Web of Juniper Networks Junos OS allows any low-…

Mitigation only
Fix from $1,950 2021-10-19
Junos HIGH 7.5
CVE-2021-31378

In broadband environments, including but not limited to Enhanced Subscriber Management, (CHAP, PPP, DHCP, etc.), on Juniper Networks Junos OS devices…

Patch available
Fix from $1,950 2021-10-19
Junos HIGH 7.5
CVE-2021-31379

An Incorrect Behavior Order vulnerability in the MAP-E automatic tunneling mechanism of Juniper Networks Junos OS allows an attacker to send certain …

No fix yet
Fix from $1,950 2021-10-19
Junos HIGH 7.5
CVE-2021-31383

In Point to MultiPoint (P2MP) scenarios within established sessions between network or adjacent neighbors the improper use of a source to destination…

Mitigation only
Fix from $1,950 2021-10-19
Junos MEDIUM 5.9
CVE-2021-31386

A Protection Mechanism Failure vulnerability in the J-Web HTTP service of Juniper Networks Junos OS allows a remote unauthenticated attacker to perfo…

Mitigation only
Fix from $1,600 2021-10-19
Session And Resource Control MEDIUM 5.3
CVE-2021-31380

A configuration weakness in the JBoss Application Server (AppSvr) component of Juniper Networks SRC Series allows a remote attacker to send a special…

Fix: 4.12.0r5 / 4.13.0r3+
Fix from $1,600 2021-10-19
Junos HIGH 8.8
CVE-2021-31372

An Improper Input Validation vulnerability in J-Web of Juniper Networks Junos OS allows a locally authenticated J-Web attacker to escalate their priv…

Fix: after 18.2
Fix from $1,950 2021-10-19
Junos HIGH 7.5
CVE-2021-31374

On Juniper Networks Junos OS and Junos OS Evolved devices processing a specially crafted BGP UPDATE or KEEPALIVE message can lead to a routing proces…

Mitigation only
Fix from $1,950 2021-10-19
Junos HIGH 7.5
CVE-2021-31376

An Improper Input Validation vulnerability in Packet Forwarding Engine manager (FXPC) process of Juniper Networks Junos OS allows an attacker to caus…

Mitigation only
Fix from $1,950 2021-10-19
Junos MEDIUM 6.5
CVE-2021-31370

An Incomplete List of Disallowed Inputs vulnerability in Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on QFX5000 Series and EX4600 Ser…

Patch available
Fix from $1,600 2021-10-19
Junos MEDIUM 5.5
CVE-2021-31377

An Incorrect Permission Assignment for Critical Resource vulnerability of a certain file in the filesystem of Junos OS allows a local authenticated a…

Mitigation only
Fix from $1,600 2021-10-19
Junos MEDIUM 5.4
CVE-2021-31373

A persistent Cross-Site Scripting (XSS) vulnerability in Juniper Networks Junos OS on SRX Series, J-Web interface may allow a remote authenticated us…

Mitigation only
Fix from $1,600 2021-10-19
Junos MEDIUM 5.3
CVE-2021-31369

On MX Series platforms with MS-MPC/MS-MIC, an Allocation of Resources Without Limits or Throttling vulnerability in Juniper Networks Junos OS allows …

Fix: 17.4+
Fix from $1,600 2021-10-19
Junos MEDIUM 5.3
CVE-2021-31371

Juniper Networks Junos OS uses the 128.0.0.0/2 subnet for internal communications between the RE and PFEs. It was discovered that packets utilizing t…

Fix: after 17.2
Fix from $1,600 2021-10-19
Junos MEDIUM 5.3
CVE-2021-31375

An Improper Input Validation vulnerability in routing process daemon (RPD) of Juniper Networks Junos OS devices configured with BGP origin validation…

Mitigation only
Fix from $1,600 2021-10-19
Junos Os Evolved HIGH 7.8
CVE-2021-31358

A command injection vulnerability in sftp command processing on Juniper Networks Junos OS Evolved allows an attacker with authenticated CLI access to…

Fix: after 20.3
Fix from $1,950 2021-10-19
Junos HIGH 7.8
CVE-2021-31359

A local privilege escalation vulnerability in Juniper Networks Junos OS and Junos OS Evolved allows a local, low-privileged user to cause the Juniper…

Fix: after 20.3
Fix from $1,950 2021-10-19
Junos HIGH 7.5
CVE-2021-31368

An Uncontrolled Resource Consumption vulnerability in the kernel of Juniper Networks JUNOS OS allows an unauthenticated network based attacker to cau…

Fix: 18.1+
Fix from $1,950 2021-10-19
Junos HIGH 7.1
CVE-2021-31360

An improper privilege management vulnerability in the Juniper Networks Junos OS and Junos OS Evolved command-line interpreter (CLI) allows a low-priv…

Fix: after 20.3
Fix from $1,950 2021-10-19
Junos MEDIUM 6.5
CVE-2021-31362

A Protection Mechanism Failure vulnerability in RPD (routing protocol daemon) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent un…

Fix: after 20.3
Fix from $1,600 2021-10-19
Junos MEDIUM 6.5
CVE-2021-31363

In an MPLS P2MP environment a Loop with Unreachable Exit Condition vulnerability in the routing protocol daemon (RPD) of Juniper Networks Junos OS an…

Patch available
Fix from $1,600 2021-10-19
Junos MEDIUM 6.5
CVE-2021-31365

An Uncontrolled Resource Consumption vulnerability in Juniper Networks Junos OS on EX2300, EX3400 and EX4300 Series platforms allows an adjacent atta…

Fix: 18.1+
Fix from $1,600 2021-10-19
Junos MEDIUM 6.5
CVE-2021-31366

An Unchecked Return Value vulnerability in the authd (authentication daemon) of Juniper Networks Junos OS on MX Series configured for subscriber mana…

Patch available
Fix from $1,600 2021-10-19
Junos MEDIUM 6.5
CVE-2021-31367

A Missing Release of Memory after Effective Lifetime vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on PTX Series a…

Patch available
Fix from $1,600 2021-10-19
Junos MEDIUM 5.9
CVE-2021-31364

An Improper Check for Unusual or Exceptional Conditions vulnerability combined with a Race Condition in the flow daemon (flowd) of Juniper Networks J…

Patch available
Fix from $1,600 2021-10-19
Junos MEDIUM 5.3
CVE-2021-31361

An Improper Check for Unusual or Exceptional Conditions vulnerability combined with Improper Handling of Exceptional Conditions in Juniper Networks J…

Patch available
Fix from $1,600 2021-10-19
128 Technology Session Smart Router Firmware CRITICAL 9.8
CVE-2021-31349

The usage of an internal HTTP header created an authentication bypass vulnerability (CWE-287), allowing an attacker to view internal files, change se…

Fix: 4.5.11+
Fix from $2,300 2021-10-19
Junos HIGH 8.8
CVE-2021-31350

An Improper Privilege Management vulnerability in the gRPC framework, used by the Juniper Extension Toolkit (JET) API on Juniper Networks Junos OS an…

Patch available
Fix from $1,950 2021-10-19
Junos HIGH 8.8
CVE-2021-31354

An Out Of Bounds (OOB) access vulnerability in the handling of responses by a Juniper Agile License (JAL) Client in Juniper Networks Junos OS and Jun…

Mitigation only
Fix from $1,950 2021-10-19
Junos Os Evolved HIGH 7.8
CVE-2021-31356

A command injection vulnerability in command processing on Juniper Networks Junos OS Evolved allows an attacker with authenticated CLI access to be a…

Fix: after 20.3
Fix from $1,950 2021-10-19