Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
MEDIUM 5.9
CVE-2018-0019
A vulnerability in Junos OS SNMP MIB-II subagent daemon (mib2d) may allow a remote network based attacker to cause the mib2d process to crash resulti…
Junos
Patch available
MEDIUM 5.5
CVE-2018-0023
JSNAPy is an open source python version of Junos Snapshot Administrator developed by Juniper available through github. The default configuration and …
Jsnapy
1.3.0+
CRITICAL 9.8
CVE-2014-3413
The MySQL server in Juniper Networks Junos Space before 13.3R1.8 has an unspecified account with a hardcoded password, which allows remote attackers …
Junos Space
Mitigation only
HIGH 7.5
CVE-2018-0015
A malicious user with unrestricted access to the AppFormix application management platform may be able to access a Python debug console and execute s…
Appformix
2.11.3 / 2.15.2+
CRITICAL 9.8
CVE-2018-0007
An unauthenticated network-based attacker able to send a maliciously crafted LLDP packet to the local segment, through a local segment broadcast, may…
Junos
Mitigation only
HIGH 8.8
CVE-2018-0005
QFX and EX Series switches configured to drop traffic when the MAC move limit is exceeded will forward traffic instead of dropping traffic. This can …
Junos
Mitigation only
HIGH 7.8
CVE-2018-0012
Junos Space is affected by a privilege escalation vulnerability that may allow a local authenticated attacker to gain root privileges.
Junos Space
after 17.2
MEDIUM 6.5
CVE-2018-0003
A specially crafted MPLS packet received or processed by the system, on an interface configured with MPLS, will store information in the system memor…
Junos
Patch available
MEDIUM 6.5
CVE-2018-0004
A sustained sequence of different types of normal transit traffic can trigger a high CPU consumption denial of service condition in the Junos OS regi…
Junos
Mitigation only
MEDIUM 6.5
CVE-2018-0010
A vulnerability in the Juniper Networks Junos Space Security Director allows a user who does not have SSH access to a device to reuse the URL that wa…
Junos Space
Patch available
MEDIUM 6.5
CVE-2018-0013
A local file inclusion vulnerability in Juniper Networks Junos Space Network Management Platform may allow an authenticated user to retrieve files fr…
Junos Space
Patch available
MEDIUM 6.5
CVE-2018-0014
Juniper Networks ScreenOS devices do not pad Ethernet packets with zeros, and thus some packets can contain fragments of system memory or data from p…
Screenos
Mitigation only
MEDIUM 6.2
CVE-2018-0008
An unauthenticated root login may allow upon reboot when a commit script is used. A commit script allows a device administrator to execute certain in…
Junos
Mitigation only
MEDIUM 5.9
CVE-2018-0009
On Juniper Networks SRX series devices, firewall rules configured to match custom application UUIDs starting with zeros can match all TCP traffic. Du…
Junos
Patch available
MEDIUM 5.4
CVE-2018-0011
A reflected cross site scripting (XSS) vulnerability in Junos Space may potentially allow a remote authenticated user to inject web script or HTML an…
Junos Space
Patch available
MEDIUM 5.3
CVE-2018-0006
A high rate of VLAN authentication attempts sent from an adjacent host on the local broadcast domain can trigger high memory utilization by the BBE s…
Junos
Patch available
CRITICAL 9.8
CVE-2018-0001EPSS 6%
A remote, unauthenticated attacker may be able to execute code by exploiting a use-after-free defect found in older versions of PHP through injection…
Junos
Patch available
MEDIUM 5.9
CVE-2018-0002
On SRX Series and MX Series devices with a Service PIC with any ALG enabled, a crafted TCP/IP response packet processed through the device results in…
Junos
Patch available
CRITICAL 9.8
CVE-2017-10622EPSS 5%
An authentication bypass vulnerability in Juniper Networks Junos Space Network Management Platform may allow a remote unauthenticated network based a…
Junos Space
Mitigation only
HIGH 8.1
CVE-2017-10623
Lack of authentication and authorization of cluster messages in Juniper Networks Junos Space may allow a man-in-the-middle type of attacker to interc…
Junos Space
after 16.2
HIGH 7.5
CVE-2017-10624
Insufficient verification of node certificates in Juniper Networks Junos Space may allow a man-in-the-middle type of attacker to make unauthorized mo…
Junos Space
after 16.1
CRITICAL 9.8
CVE-2016-1265
A remote unauthenticated network based attacker with access to Junos Space may execute arbitrary code on Junos Space or gain access to devices manage…
Junos Space
after 15.1r2
CRITICAL 9.8
CVE-2017-10615
A vulnerability in the pluggable authentication module (PAM) of Juniper Networks Junos OS may allow an unauthenticated network based attacker to pote…
Junos
Mitigation only
HIGH 8.8
CVE-2016-1261
J-Web does not validate certain input that may lead to cross-site request forgery (CSRF) issues or cause a denial of J-Web service (DoS).
Junos
Mitigation only
HIGH 8.0
CVE-2017-10612
A persistent site scripting vulnerability in Juniper Networks Junos Space allows users who can change certain configuration to implant malicious Java…
Junos Space
after 16.1r3
HIGH 7.8
CVE-2016-4922
Certain combinations of Junos OS CLI commands and arguments have been found to be exploitable in a way that can allow unauthorized access to the oper…
Junos
Mitigation only
HIGH 7.5
CVE-2016-4921
By flooding a Juniper Networks router running Junos OS with specially crafted IPv6 traffic, all available resources can be consumed, leading to the i…
Junos
Mitigation only
HIGH 7.5
CVE-2016-4925
Receipt of a specifically malformed IPv6 packet processed by the router may trigger a line card reset: processor exception 0x68616c74 (halt) in task:…
Junose
after 14.3.1
HIGH 7.5
CVE-2017-10607
Juniper Networks Junos OS 16.1R1, and services releases based off of 16.1R1, are vulnerable to the receipt of a crafted BGP Protocol Data Unit (PDU) …
Junos
Mitigation only
HIGH 7.5
CVE-2017-10608
Any Juniper Networks SRX series device with one or more ALGs enabled may experience a flowd crash when traffic is processed by the Sun/MS-RPC ALGs. T…
Junos
Mitigation only