cbcvebase.
CVE-2019-0033
published 2019-04-10

CVE-2019-0033: A firewall bypass vulnerability in the proxy ARP service of Juniper Networks Junos OS allows an attacker to cause a high CPU condition leading to a Denial of…

PriorityP342high7.5CVSS 3.0
AVNACLPRNUINSUCNINAH
EPSS
1.57%
72.6th percentile
A firewall bypass vulnerability in the proxy ARP service of Juniper Networks Junos OS allows an attacker to cause a high CPU condition leading to a Denial of Service (DoS). This issue affects only IPv4. Affected releases are Juniper Networks Junos OS: 12.1X46 versions above and including 12.1X46-D25 prior to 12.1X46-D71, 12.1X46-D73 on SRX Series; 12.3X48 versions prior to 12.3X48-D50 on SRX Series; 15.1X49 versions prior to 15.1X49-D75 on SRX Series.

Affected

9 ranges
VendorProductVersion rangeFixed in
juniperjunos12.1x46 – 12.1x46-d10
juniperjunos>= 12.1x46-d25 < 12.1x46-d7112.1x46-d71
juniperjunos>= 12.3x48 < 12.3x48-d5012.3x48-d50
juniperjunos>= 15.1x49 < 15.1x49-d7515.1x49-d75
juniperjunos_os
junipersrx_series
juniper_networksjunos_os>= 12.1X46-D25 < 12.1X46*12.1X46*
juniper_networksjunos_os>= 12.3X48 < 12.3X48-D5012.3X48-D50
juniper_networksjunos_os>= 15.1X49 < 15.1X49-D7515.1X49-D75

CVSS provenance

nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.