Vulnerability index

Browse CVEs

1,019 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Junos HIGH 7.5
CVE-2020-1634

On High-End SRX Series devices, in specific configurations and when specific networking events or operator actions occur, an SPC receiving genuine mu…

Mitigation only
Fix from $1,950 2020-04-08
Junos HIGH 7.5
CVE-2020-1638

The FPC (Flexible PIC Concentrator) of Juniper Networks Junos OS and Junos OS Evolved may restart after processing a specific IPv4 packet. Only packe…

Mitigation only
Fix from $1,950 2020-04-08
Junos HIGH 7.5
CVE-2020-1639

When an attacker sends a specific crafted Ethernet Operation, Administration, and Maintenance (Ethernet OAM) packet to a target device, it may improp…

Mitigation only
Fix from $1,950 2020-04-08
Junos MEDIUM 6.5
CVE-2020-1637

A vulnerability in Juniper Networks SRX Series device configured as a Junos OS Enforcer device may allow a user to access network resources that are …

Mitigation only
Fix from $1,600 2020-04-08
Junos MEDIUM 5.9
CVE-2020-1629

A race condition vulnerability on Juniper Network Junos OS devices may cause the routing protocol daemon (RPD) process to crash and restart while pro…

Mitigation only
Fix from $1,600 2020-04-08
Junos MEDIUM 5.5
CVE-2020-1630

A privilege escalation vulnerability in Juniper Networks Junos OS devices configured with dual Routing Engines (RE), Virtual Chassis (VC) or high-ava…

Mitigation only
Fix from $1,600 2020-04-08
Junos MEDIUM 5.3
CVE-2020-1628

Juniper Networks Junos OS uses the 128.0.0.0/2 subnet for internal communications between the RE and PFEs. It was discovered that packets utilizing t…

Mitigation only
Fix from $1,600 2020-04-08
Junos CRITICAL 10.0
CVE-2020-1614

A Use of Hard-coded Credentials vulnerability exists in the NFX250 Series for the vSRX Virtual Network Function (VNF) instance, which allows an attac…

Fix: 19.2+
Fix from $2,300 2020-04-08
Junos CRITICAL 9.8
CVE-2020-1615

The factory configuration for vMX installations, as shipped, includes default credentials for the root account. Without proper modification of these …

Mitigation only
Fix from $2,300 2020-04-08
Junos HIGH 7.5
CVE-2020-1613

A vulnerability in the BGP FlowSpec implementation may cause a Juniper Networks Junos OS device to terminate an established BGP session upon receivin…

Mitigation only
Fix from $1,950 2020-04-08
Junos HIGH 7.5
CVE-2020-1617

This issue occurs on Juniper Networks Junos OS devices which do not support Advanced Forwarding Interface (AFI) / Advanced Forwarding Toolkit (AFT). …

Mitigation only
Fix from $1,950 2020-04-08
Junos Os Evolved HIGH 7.5
CVE-2020-1626

A vulnerability in Juniper Networks Junos OS Evolved may allow an attacker to cause a Denial of Service (DoS) by sending a high rate of specific pack…

Mitigation only
Fix from $1,950 2020-04-08
Junos MEDIUM 6.8
CVE-2020-1618

On Juniper Networks EX and QFX Series, an authentication bypass vulnerability may allow a user connected to the console port to login as root without…

Mitigation only
Fix from $1,600 2020-04-08
Junos MEDIUM 6.7
CVE-2020-1619

A privilege escalation vulnerability in Juniper Networks QFX10K Series, EX9200 Series, MX Series, and PTX Series with Next-Generation Routing Engine …

Mitigation only
Fix from $1,600 2020-04-08
Junos MEDIUM 6.5
CVE-2020-1625

The kernel memory usage represented as "temp" via 'show system virtual-memory' may constantly increase when Integrated Routing and Bridging (IRB) is …

No fix yet
Fix from $1,600 2020-04-08
Junos Os Evolved MEDIUM 5.5
CVE-2020-1620

A local, authenticated user with shell can obtain the hashed values of login passwords via configd streamer log. This issue affects all versions of J…

Fix: 19.3r1+
Fix from $1,600 2020-04-08
Junos Os Evolved MEDIUM 5.5
CVE-2020-1621

A local, authenticated user with shell can obtain the hashed values of login passwords via configd traces. This issue affects all versions of Junos O…

Fix: 19.3r1+
Fix from $1,600 2020-04-08
Junos Os Evolved MEDIUM 5.5
CVE-2020-1622

A local, authenticated user with shell can obtain the hashed values of login passwords and shared secrets via the EvoSharedObjStore. This issue affec…

Fix: 19.1r1+
Fix from $1,600 2020-04-08
Junos Os Evolved MEDIUM 5.5
CVE-2020-1623

A local, authenticated user with shell can view sensitive configuration information via the ev.ops configuration file. This issue affects all version…

Fix: 19.2r1+
Fix from $1,600 2020-04-08
Junos Os Evolved MEDIUM 5.5
CVE-2020-1624

A local, authenticated user with shell can obtain the hashed values of login passwords and shared secrets via raw objmon configuration files. This is…

Fix: 19.1r1+
Fix from $1,600 2020-04-08
Advanced Threat Protection MEDIUM 5.3
CVE-2020-1616

Due to insufficient server-side login attempt limit enforcement, a vulnerability in the SSH login service of Juniper Networks Juniper Advanced Threat…

Fix: 5.0.6.0+
Fix from $1,600 2020-04-08
Junos MEDIUM 6.5
CVE-2015-3006

On the QFX3500 and QFX3600 platforms, the number of bytes collected from the RANDOM_INTERRUPT entropy source when the device boots up is insufficient…

Mitigation only
Fix from $1,600 2020-02-28
Junos MEDIUM 6.5
CVE-2015-5361

Background For regular, unencrypted FTP traffic, the FTP ALG can inspect the unencrypted control channel and open related sessions for the FTP data c…

Mitigation only
Fix from $1,600 2020-02-28
Junos HIGH 7.1
CVE-2014-6447

Multiple vulnerabilities exist in Juniper Junos J-Web error handling that may lead to cross site scripting (XSS) issues or crash the J-Web service (D…

Mitigation only
Fix from $1,950 2020-02-11
Junos HIGH 7.8
CVE-2014-6448

Juniper Junos OS 13.2 before 13.2R5, 13.2X51, 13.2X52, and 13.3 before 13.3R3 allow local users to bypass intended restrictions and execute arbitrary…

Mitigation only
Fix from $1,950 2020-01-15
Junos HIGH 8.8
CVE-2020-1602

When a device using Juniper Network's Dynamic Host Configuration Protocol Daemon (JDHCPD) process on Junos OS or Junos OS Evolved which is configured…

Mitigation only
Fix from $1,950 2020-01-15
Junos HIGH 8.8
CVE-2020-1605

When a device using Juniper Network's Dynamic Host Configuration Protocol Daemon (JDHCPD) process on Junos OS or Junos OS Evolved which is configured…

Mitigation only
Fix from $1,950 2020-01-15
Junos HIGH 8.8
CVE-2020-1609

When a device using Juniper Network's Dynamic Host Configuration Protocol Daemon (JDHCPD) process on Junos OS or Junos OS Evolved which is configured…

Mitigation only
Fix from $1,950 2020-01-15
Junos HIGH 8.6
CVE-2020-1603

Specific IPv6 packets sent by clients processed by the Routing Engine (RE) are improperly handled. These IPv6 packets are designed to be blocked by t…

Mitigation only
Fix from $1,950 2020-01-15
Junos HIGH 8.1
CVE-2020-1606

A path traversal vulnerability in the Juniper Networks Junos OS device may allow an authenticated J-web user to read files with 'world' readable perm…

Mitigation only
Fix from $1,950 2020-01-15