Vulnerability index

Browse CVEs

1,019 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.9 CVE-2018-0019 A vulnerability in Junos OS SNMP MIB-II subagent daemon (mib2d) may allow a remote network based attacker to cause the mib2d process to crash resulti… Junos Patch available Fix from $1,6002018-04-11 MEDIUM 5.5 CVE-2018-0023 JSNAPy is an open source python version of Junos Snapshot Administrator developed by Juniper available through github. The default configuration and … Jsnapy 1.3.0+ Fix from $1,6002018-04-11 CRITICAL 9.8 CVE-2014-3413 The MySQL server in Juniper Networks Junos Space before 13.3R1.8 has an unspecified account with a hardcoded password, which allows remote attackers … Junos Space Mitigation only Fix from $2,3002018-04-05 HIGH 7.5 CVE-2018-0015 A malicious user with unrestricted access to the AppFormix application management platform may be able to access a Python debug console and execute s… Appformix 2.11.3 / 2.15.2+ Fix from $1,9502018-02-22 CRITICAL 9.8 CVE-2018-0007 An unauthenticated network-based attacker able to send a maliciously crafted LLDP packet to the local segment, through a local segment broadcast, may… Junos Mitigation only Fix from $2,3002018-01-10 HIGH 8.8 CVE-2018-0005 QFX and EX Series switches configured to drop traffic when the MAC move limit is exceeded will forward traffic instead of dropping traffic. This can … Junos Mitigation only Fix from $1,9502018-01-10 HIGH 7.8 CVE-2018-0012 Junos Space is affected by a privilege escalation vulnerability that may allow a local authenticated attacker to gain root privileges. Junos Space after 17.2 Fix from $1,9502018-01-10 MEDIUM 6.5 CVE-2018-0003 A specially crafted MPLS packet received or processed by the system, on an interface configured with MPLS, will store information in the system memor… Junos Patch available Fix from $1,6002018-01-10 MEDIUM 6.5 CVE-2018-0004 A sustained sequence of different types of normal transit traffic can trigger a high CPU consumption denial of service condition in the Junos OS regi… Junos Mitigation only Fix from $1,6002018-01-10 MEDIUM 6.5 CVE-2018-0010 A vulnerability in the Juniper Networks Junos Space Security Director allows a user who does not have SSH access to a device to reuse the URL that wa… Junos Space Patch available Fix from $1,6002018-01-10 MEDIUM 6.5 CVE-2018-0013 A local file inclusion vulnerability in Juniper Networks Junos Space Network Management Platform may allow an authenticated user to retrieve files fr… Junos Space Patch available Fix from $1,6002018-01-10 MEDIUM 6.5 CVE-2018-0014 Juniper Networks ScreenOS devices do not pad Ethernet packets with zeros, and thus some packets can contain fragments of system memory or data from p… Screenos Mitigation only Fix from $1,6002018-01-10 MEDIUM 6.2 CVE-2018-0008 An unauthenticated root login may allow upon reboot when a commit script is used. A commit script allows a device administrator to execute certain in… Junos Mitigation only Fix from $1,6002018-01-10 MEDIUM 5.9 CVE-2018-0009 On Juniper Networks SRX series devices, firewall rules configured to match custom application UUIDs starting with zeros can match all TCP traffic. Du… Junos Patch available Fix from $1,6002018-01-10 MEDIUM 5.4 CVE-2018-0011 A reflected cross site scripting (XSS) vulnerability in Junos Space may potentially allow a remote authenticated user to inject web script or HTML an… Junos Space Patch available Fix from $1,6002018-01-10 MEDIUM 5.3 CVE-2018-0006 A high rate of VLAN authentication attempts sent from an adjacent host on the local broadcast domain can trigger high memory utilization by the BBE s… Junos Patch available Fix from $1,6002018-01-10 CRITICAL 9.8 CVE-2018-0001EPSS 6% A remote, unauthenticated attacker may be able to execute code by exploiting a use-after-free defect found in older versions of PHP through injection… Junos Patch available Fix from $2,3002018-01-10 MEDIUM 5.9 CVE-2018-0002 On SRX Series and MX Series devices with a Service PIC with any ALG enabled, a crafted TCP/IP response packet processed through the device results in… Junos Patch available Fix from $1,6002018-01-10 CRITICAL 9.8 CVE-2017-10622EPSS 5% An authentication bypass vulnerability in Juniper Networks Junos Space Network Management Platform may allow a remote unauthenticated network based a… Junos Space Mitigation only Fix from $2,3002017-10-13 HIGH 8.1 CVE-2017-10623 Lack of authentication and authorization of cluster messages in Juniper Networks Junos Space may allow a man-in-the-middle type of attacker to interc… Junos Space after 16.2 Fix from $1,9502017-10-13 HIGH 7.5 CVE-2017-10624 Insufficient verification of node certificates in Juniper Networks Junos Space may allow a man-in-the-middle type of attacker to make unauthorized mo… Junos Space after 16.1 Fix from $1,9502017-10-13 CRITICAL 9.8 CVE-2016-1265 A remote unauthenticated network based attacker with access to Junos Space may execute arbitrary code on Junos Space or gain access to devices manage… Junos Space after 15.1r2 Fix from $2,3002017-10-13 CRITICAL 9.8 CVE-2017-10615 A vulnerability in the pluggable authentication module (PAM) of Juniper Networks Junos OS may allow an unauthenticated network based attacker to pote… Junos Mitigation only Fix from $2,3002017-10-13 HIGH 8.8 CVE-2016-1261 J-Web does not validate certain input that may lead to cross-site request forgery (CSRF) issues or cause a denial of J-Web service (DoS). Junos Mitigation only Fix from $1,9502017-10-13 HIGH 8.0 CVE-2017-10612 A persistent site scripting vulnerability in Juniper Networks Junos Space allows users who can change certain configuration to implant malicious Java… Junos Space after 16.1r3 Fix from $1,9502017-10-13 HIGH 7.8 CVE-2016-4922 Certain combinations of Junos OS CLI commands and arguments have been found to be exploitable in a way that can allow unauthorized access to the oper… Junos Mitigation only Fix from $1,9502017-10-13 HIGH 7.5 CVE-2016-4921 By flooding a Juniper Networks router running Junos OS with specially crafted IPv6 traffic, all available resources can be consumed, leading to the i… Junos Mitigation only Fix from $1,9502017-10-13 HIGH 7.5 CVE-2016-4925 Receipt of a specifically malformed IPv6 packet processed by the router may trigger a line card reset: processor exception 0x68616c74 (halt) in task:… Junose after 14.3.1 Fix from $1,9502017-10-13 HIGH 7.5 CVE-2017-10607 Juniper Networks Junos OS 16.1R1, and services releases based off of 16.1R1, are vulnerable to the receipt of a crafted BGP Protocol Data Unit (PDU) … Junos Mitigation only Fix from $1,9502017-10-13 HIGH 7.5 CVE-2017-10608 Any Juniper Networks SRX series device with one or more ALGs enabled may experience a flowd crash when traffic is processed by the Sun/MS-RPC ALGs. T… Junos Mitigation only Fix from $1,9502017-10-13