Vulnerability index

Browse CVEs

1,019 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Junos MEDIUM 5.3
CVE-2018-0055

Receipt of a specially crafted DHCPv6 message destined to a Junos OS device configured as a DHCP server in a Broadband Edge (BBE) environment may res…

Mitigation only
Fix from $1,600 2018-10-10
Junos MEDIUM 5.3
CVE-2018-0056

If a duplicate MAC address is learned by two different interfaces on an MX Series device, the MAC address learning function correctly flaps between t…

Mitigation only
Fix from $1,600 2018-10-10
Junos HIGH 7.5
CVE-2018-0048

A vulnerability in the Routing Protocols Daemon (RPD) with Juniper Extension Toolkit (JET) support can allow a network based unauthenticated attacker…

Mitigation only
Fix from $1,950 2018-10-10
Junos Space MEDIUM 5.4
CVE-2018-0047

A persistent cross-site scripting vulnerability in the UI framework used by Junos Space Security Director may allow authenticated users to inject per…

Mitigation only
Fix from $1,600 2018-10-10
Junos HIGH 8.8
CVE-2018-0043

Receipt of a specific MPLS packet may cause the routing protocol daemon (RPD) process to crash and restart or may lead to remote code execution. By c…

Mitigation only
Fix from $1,950 2018-10-10
Junos HIGH 8.8
CVE-2018-0045

Receipt of a specific Draft-Rosen MVPN control packet may cause the routing protocol daemon (RPD) process to crash and restart or may lead to remote …

Mitigation only
Fix from $1,950 2018-10-10
Junos HIGH 8.1
CVE-2018-0044

An insecure SSHD configuration in Juniper Device Manager (JDM) and host OS on Juniper NFX Series devices may allow remote unauthenticated access if a…

Fix: after 18.1r3
Fix from $1,950 2018-10-10
Junos Space MEDIUM 6.1
CVE-2018-0046

A reflected cross-site scripting vulnerability in OpenNMS included with Juniper Networks Junos Space may allow the stealing of sensitive information …

Patch available
Fix from $1,600 2018-10-10
Junos CRITICAL 9.8
CVE-2018-0035

QFX5200 and QFX10002 devices that have been shipped with Junos OS 15.1X53-D21, 15.1X53-D30, 15.1X53-D31, 15.1X53-D32, 15.1X53-D33 and 15.1X53-D60 or …

Mitigation only
Fix from $2,300 2018-07-11
Junos CRITICAL 9.8
CVE-2018-0037

Junos OS routing protocol daemon (RPD) process may crash and restart or may lead to remote code execution while processing specific BGP NOTIFICATION …

Mitigation only
Fix from $2,300 2018-07-11
Contrail Service Orchestration CRITICAL 9.8
CVE-2018-0038

Juniper Networks Contrail Service Orchestration releases prior to 3.3.0 have Cassandra service enabled by default with hardcoded credentials. These c…

Fix: 3.3.0+
Fix from $2,300 2018-07-11
Contrail Service Orchestration CRITICAL 9.8
CVE-2018-0039

Juniper Networks Contrail Service Orchestration releases prior to 4.0.0 have Grafana service enabled by default with hardcoded credentials. These cre…

Fix: 4.0.0+
Fix from $2,300 2018-07-11
Contrail Service Orchestration CRITICAL 9.8
CVE-2018-0040

Juniper Networks Contrail Service Orchestrator versions prior to 4.0.0 use hardcoded cryptographic certificates and keys in some cases, which may all…

Fix: 4.0.0+
Fix from $2,300 2018-07-11
Contrail Service Orchestration CRITICAL 9.8
CVE-2018-0041

Juniper Networks Contrail Service Orchestration releases prior to 3.3.0 use hardcoded credentials to access Keystone service. These credentials allow…

Fix: 3.3.0+
Fix from $2,300 2018-07-11
Contrail Service Orchestration CRITICAL 9.8
CVE-2018-0042

Juniper Networks CSO versions prior to 4.0.0 may log passwords in log files leading to an information disclosure vulnerability.

Fix: 4.0.0+
Fix from $2,300 2018-07-11
Junos HIGH 8.1
CVE-2018-0025

When an SRX Series device is configured to use HTTP/HTTPS pass-through authentication services, a client sending authentication credentials in the in…

Mitigation only
Fix from $1,950 2018-07-11
Junos HIGH 7.8
CVE-2018-0024

An Improper Privilege Management vulnerability in a shell session of Juniper Networks Junos OS allows an authenticated unprivileged attacker to gain …

Mitigation only
Fix from $1,950 2018-07-11
Junos HIGH 7.5
CVE-2018-0026

After Junos OS device reboot or upgrade, the stateless firewall filter configuration may not take effect. This issue can be verified by running the c…

Mitigation only
Fix from $1,950 2018-07-11
Junos HIGH 7.5
CVE-2018-0030

Receipt of a specific MPLS packet may cause MPC7/8/9, PTX-FPC3 (FPC-P1, FPC-P2) line cards or PTX1K to crash and restart. By continuously sending spe…

Mitigation only
Fix from $1,950 2018-07-11
Junos HIGH 7.5
CVE-2018-0032

The receipt of a crafted BGP UPDATE can lead to a routing process daemon (RPD) crash and restart. Repeated receipt of the same crafted BGP UPDATE can…

Mitigation only
Fix from $1,950 2018-07-11
Junos MEDIUM 6.5
CVE-2018-0029

While experiencing a broadcast storm, placing the fxp0 interface into promiscuous mode via the 'monitor traffic interface fxp0' can cause the system …

Mitigation only
Fix from $1,600 2018-07-11
Junos MEDIUM 5.9
CVE-2018-0027

Receipt of a crafted or malformed RSVP PATH message may cause the routing protocol daemon (RPD) to hang or crash. When RPD is unavailable, routing up…

Mitigation only
Fix from $1,600 2018-07-11
Junos MEDIUM 5.9
CVE-2018-0031

Receipt of specially crafted UDP/IP packets over MPLS may be able to bypass a stateless firewall filter. The crafted UDP packets must be encapsulated…

Mitigation only
Fix from $1,600 2018-07-11
Junos MEDIUM 5.9
CVE-2018-0034

A Denial of Service vulnerability exists in the Juniper Networks Junos OS JDHCPD daemon which allows an attacker to core the JDHCPD daemon by sending…

Mitigation only
Fix from $1,600 2018-07-11
Junos HIGH 8.8
CVE-2018-0021

If all 64 digits of the connectivity association name (CKN) key or all 32 digits of the connectivity association key (CAK) key are not configured, al…

Mitigation only
Fix from $1,950 2018-04-11
Junos HIGH 7.5
CVE-2018-0016

Receipt of a specially crafted Connectionless Network Protocol (CLNP) datagram destined to an interface of a Junos OS device may result in a kernel c…

Mitigation only
Fix from $1,950 2018-04-11
Junos HIGH 7.5
CVE-2018-0020

Junos OS may be impacted by the receipt of a malformed BGP UPDATE which can lead to a routing process daemon (rpd) crash and restart. Receipt of a re…

Mitigation only
Fix from $1,950 2018-04-11
Junos HIGH 7.5
CVE-2018-0022

A Junos device with VPLS routing-instances configured on one or more interfaces may be susceptible to an mbuf leak when processing a specific MPLS pa…

Mitigation only
Fix from $1,950 2018-04-11
Junos MEDIUM 6.5
CVE-2018-0017

A vulnerability in the Network Address Translation - Protocol Translation (NAT-PT) feature of Junos OS on SRX series devices may allow a certain vali…

Fix: after 15.1x49
Fix from $1,600 2018-04-11
Junos MEDIUM 5.9
CVE-2018-0018

On SRX Series devices during compilation of IDP policies, an attacker sending specially crafted packets may be able to bypass firewall rules, leading…

Patch available
Fix from $1,600 2018-04-11