Vulnerability index

Browse CVEs

1,019 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2017-10614 A vulnerability in telnetd service on Junos OS allows a remote attacker to cause a limited memory and/or CPU consumption denial of service attack. Th… Junos Mitigation only Fix from $1,9502017-10-13 HIGH 7.5 CVE-2017-10619 When Express Path (formerly known as service offloading) is configured on Juniper Networks SRX1400, SRX3400, SRX3600, SRX5400, SRX5600, SRX5800 in hi… Junos Mitigation only Fix from $1,9502017-10-13 HIGH 7.4 CVE-2017-10620 Juniper Networks Junos OS on SRX series devices do not verify the HTTPS server certificate before downloading anti-virus updates. This may allow a ma… Junos Mitigation only Fix from $1,9502017-10-13 MEDIUM 6.1 CVE-2016-4923 Insufficient cross site scripting protection in J-Web component in Juniper Networks Junos OS may potentially allow a remote unauthenticated user to i… Junos Mitigation only Fix from $1,6002017-10-13 MEDIUM 5.9 CVE-2017-10610 On SRX Series devices, a crafted ICMP packet embedded within a NAT64 IPv6 to IPv4 tunnel may cause the flowd process to crash. Repeated crashes of th… Junos Mitigation only Fix from $1,6002017-10-13 MEDIUM 5.9 CVE-2017-10611 If extended statistics are enabled via 'set chassis extended-statistics', when executing any operation that fetches interface statistics, including b… Junos Mitigation only Fix from $1,6002017-10-13 MEDIUM 5.9 CVE-2017-10618 When the 'bgp-error-tolerance' feature â€" designed to help mitigate remote session resets from malformed path attributes â€" is … Junos Mitigation only Fix from $1,6002017-10-13 MEDIUM 5.5 CVE-2016-4924 An incorrect permissions vulnerability in Juniper Networks Junos OS on vMX may allow local unprivileged users on a host system read access to vMX or … Junos Mitigation only Fix from $1,6002017-10-13 MEDIUM 5.5 CVE-2017-10613 A vulnerability in a specific loopback filter action command, processed in a specific logical order of operation, in a running configuration of Junip… Junos Mitigation only Fix from $1,6002017-10-13 MEDIUM 5.3 CVE-2017-10616 The ifmap service that comes bundled with Juniper Networks Contrail releases uses hard coded credentials. Affected releases are Contrail releases 2.2… Contrail Mitigation only Fix from $1,6002017-10-13 MEDIUM 5.3 CVE-2017-10621 A denial of service vulnerability in telnetd service on Juniper Networks Junos OS allows remote unauthenticated attackers to cause a denial of servic… Junos Mitigation only Fix from $1,6002017-10-13 MEDIUM 5.0 CVE-2017-10617 The ifmap service that comes bundled with Contrail has an XML External Entity (XXE) vulnerability that may allow an attacker to retrieve sensitive sy… Contrail 2.21.4 / 3.0.3.4+ Fix from $1,6002017-10-13 CRITICAL 9.8 CVE-2017-2343 The Integrated User Firewall (UserFW) feature was introduced in Junos OS version 12.1X47-D10 on the Juniper SRX Series devices to provide simple inte… Junos Mitigation only Fix from $2,3002017-07-17 CRITICAL 9.8 CVE-2017-2345 On Junos OS devices with SNMP enabled, a network based attacker with unfiltered access to the RE can cause the Junos OS snmpd daemon to crash and res… Junos Mitigation only Fix from $2,3002017-07-17 HIGH 8.8 CVE-2017-2341 An insufficient authentication vulnerability on platforms where Junos OS instances are run in a virtualized environment, may allow unprivileged users… Junos Mitigation only Fix from $1,9502017-07-17 HIGH 8.8 CVE-2017-2349 A command injection vulnerability in the IDP feature of Juniper Networks Junos OS on SRX series devices potentially allows a user with login access t… Junos Mitigation only Fix from $1,9502017-07-17 HIGH 8.1 CVE-2017-2342 MACsec feature on Juniper Networks Junos OS 15.1X49 prior to 15.1X49-D100 on SRX300 series does not report errors when a secure link can not be estab… Junos Mitigation only Fix from $1,9502017-07-17 HIGH 7.8 CVE-2017-2344 A routine within an internal Junos OS sockets library is vulnerable to a buffer overflow. Malicious exploitation of this issue may lead to a denial o… Junos Mitigation only Fix from $1,9502017-07-17 HIGH 7.5 CVE-2017-2347 A denial of service vulnerability in rpd daemon of Juniper Networks Junos OS allows a malformed MPLS ping packet to crash the rpd daemon if MPLS OAM … Junos Mitigation only Fix from $1,9502017-07-17 HIGH 7.5 CVE-2017-2348 The Juniper Enhanced jdhcpd daemon may experience high CPU utilization, or crash and restart upon receipt of an invalid IPv6 UDP packet. Both high CP… Junos Mitigation only Fix from $1,9502017-07-17 MEDIUM 5.9 CVE-2017-2346 An MS-MPC or MS-MIC Service PIC may crash when large fragmented packets are passed through an Application Layer Gateway (ALG). Repeated crashes of th… Junos Mitigation only Fix from $1,6002017-07-17 MEDIUM 5.4 CVE-2017-2337 A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN running ScreenOS allows a user … Screenos Mitigation only Fix from $1,6002017-07-17 MEDIUM 5.4 CVE-2017-2338 A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN running ScreenOS allows a user … Screenos Mitigation only Fix from $1,6002017-07-17 MEDIUM 5.4 CVE-2017-2339 A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN running ScreenOS allows a user … Screenos Mitigation only Fix from $1,6002017-07-17 HIGH 7.5 CVE-2017-2314 Receipt of a malformed BGP OPEN message may cause the routing protocol daemon (rpd) process to crash and restart. By continuously sending specially c… Junos Mitigation only Fix from $1,9502017-07-17 MEDIUM 5.4 CVE-2017-2335 A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN running ScreenOS allows a user … Screenos Mitigation only Fix from $1,6002017-07-17 MEDIUM 5.4 CVE-2017-2336 A reflected cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN running ScreenOS allows a networ… Screenos Mitigation only Fix from $1,6002017-07-17 CRITICAL 9.8 CVE-2017-10601 A specific device configuration can result in a commit failure condition. When this occurs, a user is logged in without being prompted for a password… Junos Mitigation only Fix from $2,3002017-07-17 HIGH 7.8 CVE-2017-10602 A buffer overflow vulnerability in Junos OS CLI may allow a local authenticated user with read only privileges and access to Junos CLI, to execute co… Junos Mitigation only Fix from $1,9502017-07-17 HIGH 7.8 CVE-2017-10603 An XML injection vulnerability in Junos OS CLI can allow a locally authenticated user to elevate privileges and run arbitrary commands as the root us… Junos Mitigation only Fix from $1,9502017-07-17