Vulnerability index

Browse CVEs

1,019 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Junos MEDIUM 5.9
CVE-2018-0019

A vulnerability in Junos OS SNMP MIB-II subagent daemon (mib2d) may allow a remote network based attacker to cause the mib2d process to crash resulti…

Patch available
Fix from $1,600 2018-04-11
Jsnapy MEDIUM 5.5
CVE-2018-0023

JSNAPy is an open source python version of Junos Snapshot Administrator developed by Juniper available through github. The default configuration and …

Fix: 1.3.0+
Fix from $1,600 2018-04-11
Junos Space CRITICAL 9.8
CVE-2014-3413

The MySQL server in Juniper Networks Junos Space before 13.3R1.8 has an unspecified account with a hardcoded password, which allows remote attackers …

Mitigation only
Fix from $2,300 2018-04-05
Appformix HIGH 7.5
CVE-2018-0015

A malicious user with unrestricted access to the AppFormix application management platform may be able to access a Python debug console and execute s…

Fix: 2.11.3 / 2.15.2+
Fix from $1,950 2018-02-22
Junos CRITICAL 9.8
CVE-2018-0007

An unauthenticated network-based attacker able to send a maliciously crafted LLDP packet to the local segment, through a local segment broadcast, may…

Mitigation only
Fix from $2,300 2018-01-10
Junos HIGH 8.8
CVE-2018-0005

QFX and EX Series switches configured to drop traffic when the MAC move limit is exceeded will forward traffic instead of dropping traffic. This can …

Mitigation only
Fix from $1,950 2018-01-10
Junos Space HIGH 7.8
CVE-2018-0012

Junos Space is affected by a privilege escalation vulnerability that may allow a local authenticated attacker to gain root privileges.

Fix: after 17.2
Fix from $1,950 2018-01-10
Junos MEDIUM 6.5
CVE-2018-0003

A specially crafted MPLS packet received or processed by the system, on an interface configured with MPLS, will store information in the system memor…

Patch available
Fix from $1,600 2018-01-10
Junos MEDIUM 6.5
CVE-2018-0004

A sustained sequence of different types of normal transit traffic can trigger a high CPU consumption denial of service condition in the Junos OS regi…

Mitigation only
Fix from $1,600 2018-01-10
Junos Space MEDIUM 6.5
CVE-2018-0010

A vulnerability in the Juniper Networks Junos Space Security Director allows a user who does not have SSH access to a device to reuse the URL that wa…

Patch available
Fix from $1,600 2018-01-10
Junos Space MEDIUM 6.5
CVE-2018-0013

A local file inclusion vulnerability in Juniper Networks Junos Space Network Management Platform may allow an authenticated user to retrieve files fr…

Patch available
Fix from $1,600 2018-01-10
Screenos MEDIUM 6.5
CVE-2018-0014

Juniper Networks ScreenOS devices do not pad Ethernet packets with zeros, and thus some packets can contain fragments of system memory or data from p…

Mitigation only
Fix from $1,600 2018-01-10
Junos MEDIUM 6.2
CVE-2018-0008

An unauthenticated root login may allow upon reboot when a commit script is used. A commit script allows a device administrator to execute certain in…

Mitigation only
Fix from $1,600 2018-01-10
Junos MEDIUM 5.9
CVE-2018-0009

On Juniper Networks SRX series devices, firewall rules configured to match custom application UUIDs starting with zeros can match all TCP traffic. Du…

Patch available
Fix from $1,600 2018-01-10
Junos Space MEDIUM 5.4
CVE-2018-0011

A reflected cross site scripting (XSS) vulnerability in Junos Space may potentially allow a remote authenticated user to inject web script or HTML an…

Patch available
Fix from $1,600 2018-01-10
Junos MEDIUM 5.3
CVE-2018-0006

A high rate of VLAN authentication attempts sent from an adjacent host on the local broadcast domain can trigger high memory utilization by the BBE s…

Patch available
Fix from $1,600 2018-01-10
Junos CRITICAL 9.8
CVE-2018-0001EPSS 6%

A remote, unauthenticated attacker may be able to execute code by exploiting a use-after-free defect found in older versions of PHP through injection…

Patch available
Fix from $2,300 2018-01-10
Junos MEDIUM 5.9
CVE-2018-0002

On SRX Series and MX Series devices with a Service PIC with any ALG enabled, a crafted TCP/IP response packet processed through the device results in…

Patch available
Fix from $1,600 2018-01-10
Junos Space CRITICAL 9.8
CVE-2017-10622EPSS 5%

An authentication bypass vulnerability in Juniper Networks Junos Space Network Management Platform may allow a remote unauthenticated network based a…

Mitigation only
Fix from $2,300 2017-10-13
Junos Space HIGH 8.1
CVE-2017-10623

Lack of authentication and authorization of cluster messages in Juniper Networks Junos Space may allow a man-in-the-middle type of attacker to interc…

Fix: after 16.2
Fix from $1,950 2017-10-13
Junos Space HIGH 7.5
CVE-2017-10624

Insufficient verification of node certificates in Juniper Networks Junos Space may allow a man-in-the-middle type of attacker to make unauthorized mo…

Fix: after 16.1
Fix from $1,950 2017-10-13
Junos Space CRITICAL 9.8
CVE-2016-1265

A remote unauthenticated network based attacker with access to Junos Space may execute arbitrary code on Junos Space or gain access to devices manage…

Fix: after 15.1r2
Fix from $2,300 2017-10-13
Junos CRITICAL 9.8
CVE-2017-10615

A vulnerability in the pluggable authentication module (PAM) of Juniper Networks Junos OS may allow an unauthenticated network based attacker to pote…

Mitigation only
Fix from $2,300 2017-10-13
Junos HIGH 8.8
CVE-2016-1261

J-Web does not validate certain input that may lead to cross-site request forgery (CSRF) issues or cause a denial of J-Web service (DoS).

Mitigation only
Fix from $1,950 2017-10-13
Junos Space HIGH 8.0
CVE-2017-10612

A persistent site scripting vulnerability in Juniper Networks Junos Space allows users who can change certain configuration to implant malicious Java…

Fix: after 16.1r3
Fix from $1,950 2017-10-13
Junos HIGH 7.8
CVE-2016-4922

Certain combinations of Junos OS CLI commands and arguments have been found to be exploitable in a way that can allow unauthorized access to the oper…

Mitigation only
Fix from $1,950 2017-10-13
Junos HIGH 7.5
CVE-2016-4921

By flooding a Juniper Networks router running Junos OS with specially crafted IPv6 traffic, all available resources can be consumed, leading to the i…

Mitigation only
Fix from $1,950 2017-10-13
Junose HIGH 7.5
CVE-2016-4925

Receipt of a specifically malformed IPv6 packet processed by the router may trigger a line card reset: processor exception 0x68616c74 (halt) in task:…

Fix: after 14.3.1
Fix from $1,950 2017-10-13
Junos HIGH 7.5
CVE-2017-10607

Juniper Networks Junos OS 16.1R1, and services releases based off of 16.1R1, are vulnerable to the receipt of a crafted BGP Protocol Data Unit (PDU) …

Mitigation only
Fix from $1,950 2017-10-13
Junos HIGH 7.5
CVE-2017-10608

Any Juniper Networks SRX series device with one or more ALGs enabled may experience a flowd crash when traffic is processed by the Sun/MS-RPC ALGs. T…

Mitigation only
Fix from $1,950 2017-10-13