Juniper Networks Junos Os vulnerabilities
670 known vulnerabilities affecting juniper_networks/junos_os.
Total CVEs
670
CISA KEV
7
actively exploited
Public exploits
6
Exploited in wild
9
Severity breakdown
CRITICAL34HIGH298MEDIUM338
Vulnerabilities
Page 18 of 34
CVE-2021-0217P3HIGHCVSS 7.4≥ 17.4, < 17.4R3-S3≥ 18.1R3-S6, < 18.1*+9 more2021-01-15
CVE-2021-0217 [HIGH] CWE-119 CVE-2021-0217: A vulnerability in processing of certain DHCP packets from adjacent clients on EX Series and QFX Ser
A vulnerability in processing of certain DHCP packets from adjacent clients on EX Series and QFX Series switches running Juniper Networks Junos OS with DHCP local/relay server configured may lead to exhaustion of DMA memory causing a Denial of Service (DoS). Over time, exploitation of this vulnerability may cause traffic to stop being forwarded, or to c
nvd
CVE-2018-0017P3MEDIUMCVSS 6.5≥ 12.1X46, < 12.1X46-D76≥ 12.3X48, < 12.3X48-D55+1 more2018-04-11
CVE-2018-0017 [MEDIUM] CWE-20 CVE-2018-0017: A vulnerability in the Network Address Translation - Protocol Translation (NAT-PT) feature of Junos
A vulnerability in the Network Address Translation - Protocol Translation (NAT-PT) feature of Junos OS on SRX series devices may allow a certain valid IPv6 packet to crash the flowd daemon. Repeated crashes of the flowd daemon can result in an extended denial of service condition for the SRX device. Affected releases are Juniper Networks Junos OS: 12.1X
nvd
CVE-2023-22404P3MEDIUMCVSS 6.5≥ unspecified, < 19.3R3-S7≥ 19.4, < 19.4R3-S9+8 more2023-01-13
CVE-2023-22404 [MEDIUM] CWE-787 CVE-2023-22404: An Out-of-bounds Write vulnerability in the Internet Key Exchange Protocol daemon (iked) of Juniper
An Out-of-bounds Write vulnerability in the Internet Key Exchange Protocol daemon (iked) of Juniper Networks Junos OS on SRX series and MX with SPC3 allows an authenticated, network-based attacker to cause a Denial of Service (DoS). iked will crash and restart, and the tunnel will not come up when a peer sends a specifically formatted payload during
nvd
CVE-2022-22186P3MEDIUMCVSS 6.5≥ unspecified, < 19.1R3-S8≥ 19.2, < 19.2R3-S5+10 more2022-04-14
CVE-2022-22186 [MEDIUM] CWE-665 CVE-2022-22186: Due to an Improper Initialization vulnerability in Juniper Networks Junos OS on EX4650 devices, pack
Due to an Improper Initialization vulnerability in Juniper Networks Junos OS on EX4650 devices, packets received on the management interface (em0) but not destined to the device, may be improperly forwarded to an egress interface, instead of being discarded. Such traffic being sent by a client may appear genuine, but is non-standard in nature and sh
nvd
CVE-2026-57032P3MEDIUMCVSS 6.5fixed in 23.2R2-S7≥ 23.4, < 23.4R2-S8+2 more2026-07-09
CVE-2026-57032 [MEDIUM] CWE-236 CVE-2026-57032: An Improper Handling of Undefined Parameters vulnerability in the packet forwarding engine (pfe) of
An Improper Handling of Undefined Parameters vulnerability in the packet forwarding engine (pfe) of Juniper Networks Junos OS on EX Series devices allows an authenticated attacker with low privileges to cause a Denial-of-Service (DoS).
If an attempt is made to subscribe to an unsupported telemetry sensor path on EX2300, EX3400, EX4000, EX4100 and EX
nvd
CVE-2021-0291P3MEDIUMCVSS 6.5≥ 15.1, < 15.1R7-S9≥ 17.3, < 17.3R3-S12+10 more2021-07-15
CVE-2021-0291 [MEDIUM] CWE-497 CVE-2021-0291: An Exposure of System Data vulnerability in Juniper Networks Junos OS and Junos OS Evolved, where a
An Exposure of System Data vulnerability in Juniper Networks Junos OS and Junos OS Evolved, where a sensitive system-level resource is not being sufficiently protected, allows a network-based unauthenticated attacker to send specific traffic which partially reaches this resource. A high rate of specific traffic may lead to a partial Denial of Service (
nvd
CVE-2025-52988P3MEDIUMCVSS 6.7fixed in 21.2R3-S9≥ 21.4, < 21.4R3-S8+5 more2025-07-11
CVE-2025-52988 [MEDIUM] CWE-78 CVE-2025-52988: An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulner
An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in the CLI of Juniper Networks Junos OS and Junos OS Evolved allows a high privileged, local attacker to escalated their privileges to root.
When a user provides specifically crafted arguments to the 'request system logout' command, these will
nvd
CVE-2024-21603P3MEDIUMCVSS 6.5fixed in 20.4R3-S9≥ 21.2, < 21.2R3-S6+5 more2024-01-12
CVE-2024-21603 [MEDIUM] CWE-754 CVE-2024-21603: An Improper Check for Unusual or Exceptional Conditions vulnerability in the kernel of Juniper Netw
An Improper Check for Unusual or Exceptional Conditions vulnerability in the kernel of Juniper Network Junos OS on MX Series allows a network based attacker with low privileges to cause a denial of service.
If a scaled configuration for Source class usage (SCU) / destination class usage (DCU) (more than 10 route classes) is present and the SCU/DCU s
nvd
CVE-2026-57022P3MEDIUMCVSS 5.9fixed in 23.2R2-S4≥ 23.4, < 23.4R2-S5+1 more2026-07-09
CVE-2026-57022 [MEDIUM] CWE-754 CVE-2026-57022: An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engin
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on MX with SPC3 and SRX Series allows an unauthenticated, network-based attacker to cause a Denial-of-Service (DoS).
When an affected device initiates a TCP connection to an attacker-controlled system that respond
nvd
CVE-2026-57054P3MEDIUMCVSS 5.8fixed in 23.2R2-S7≥ 23.4, < 23.4R2-S8+4 more2026-07-09
CVE-2026-57054 [MEDIUM] CWE-706 CVE-2026-57054: A Use of Incorrectly-Resolved Name or Reference vulnerability in the URL filtering plugin of Juniper
A Use of Incorrectly-Resolved Name or Reference vulnerability in the URL filtering plugin of Juniper Networks Junos OS on MX Series allows an unauthenticated, network-based attacker to bypass web filtering and access downstream resources that should be unreachable.
If an MX Series device is configured with web filtering, and an attacker sends a re
nvd
CVE-2017-2348P3HIGHCVSS 7.5v14.1X53 prior to 14.1X53-D12, 14.1X53-D38, 14.1X53-D40v15.1 prior to 15.1F2-S18, 15.1R4+2 more2017-07-17
CVE-2017-2348 [HIGH] CWE-400 CVE-2017-2348: The Juniper Enhanced jdhcpd daemon may experience high CPU utilization, or crash and restart upon re
The Juniper Enhanced jdhcpd daemon may experience high CPU utilization, or crash and restart upon receipt of an invalid IPv6 UDP packet. Both high CPU utilization and repeated crashes of the jdhcpd daemon can result in a denial of service as DHCP service is interrupted. No other Juniper Networks products or platforms are affected by this issue. Affected
nvd
CVE-2021-0222P3HIGHCVSS 7.4≥ 14.1X53, < 14.1X53-D53≥ 15.1, < 15.1R7-S6+18 more2021-01-15
CVE-2021-0222 [HIGH] CWE-16 CVE-2021-0222: A vulnerability in Juniper Networks Junos OS allows an attacker to cause a Denial of Service (DoS) t
A vulnerability in Juniper Networks Junos OS allows an attacker to cause a Denial of Service (DoS) to the device by sending certain crafted protocol packets from an adjacent device with invalid payloads to the device. These crafted packets, which should be discarded, are instead replicated and sent to the RE. Over time, a Denial of Service (DoS) occurs.
nvd
CVE-2021-0259P3HIGHCVSS 7.4≥ 17.3, < 17.3R3-S11≥ 17.4, < 17.4R3-S5+11 more2021-04-22
CVE-2021-0259 [HIGH] CWE-755 CVE-2021-0259: Due to a vulnerability in DDoS protection in Juniper Networks Junos OS and Junos OS Evolved on QFX5K
Due to a vulnerability in DDoS protection in Juniper Networks Junos OS and Junos OS Evolved on QFX5K Series switches in a VXLAN configuration, instability might be experienced in the underlay network as a consequence of exceeding the default ddos-protection aggregate threshold. If an attacker on a client device on the overlay network sends a high volume
nvd
CVE-2021-0210P3MEDIUMCVSS 6.8≥ 12.3, < 12.3R12-S17≥ 17.3, < 17.3R3-S10+11 more2021-01-15
CVE-2021-0210 [MEDIUM] CWE-200 CVE-2021-0210: An Information Exposure vulnerability in J-Web of Juniper Networks Junos OS allows an unauthenticate
An Information Exposure vulnerability in J-Web of Juniper Networks Junos OS allows an unauthenticated attacker to elevate their privileges over the target system through opportunistic use of an authenticated users session. This issue affects: Juniper Networks Junos OS 12.3 versions prior to 12.3R12-S17; 17.3 versions prior to 17.3R3-S10; 17.4 versions
nvd
CVE-2020-1600P3MEDIUMCVSS 6.5≥ 12.3X48, < 12.3X48-D90≥ 15.1X53, < 15.1X53-D238, 15.1X53-D592+15 more2020-01-15
CVE-2020-1600 [MEDIUM] CWE-400 CVE-2020-1600: In a Point-to-Multipoint (P2MP) Label Switched Path (LSP) scenario, an uncontrolled resource consump
In a Point-to-Multipoint (P2MP) Label Switched Path (LSP) scenario, an uncontrolled resource consumption vulnerability in the Routing Protocol Daemon (RPD) in Juniper Networks Junos OS allows a specific SNMP request to trigger an infinite loop causing a high CPU usage Denial of Service (DoS) condition. This issue affects both SNMP over IPv4 and IPv6.
nvd
CVE-2020-1637P3MEDIUMCVSS 6.5≥ 12.3X48, < 12.3X48-D100≥ 15.1X49, < 15.1X49-D210+10 more2020-04-08
CVE-2020-1637 [MEDIUM] CWE-288 CVE-2020-1637: A vulnerability in Juniper Networks SRX Series device configured as a Junos OS Enforcer device may a
A vulnerability in Juniper Networks SRX Series device configured as a Junos OS Enforcer device may allow a user to access network resources that are not permitted by a UAC policy. This issue might occur when the IP address range configured in the Infranet Controller (IC) is configured as an IP address range instead of an IP address/netmask. See the Wo
nvd
CVE-2018-0018P3MEDIUMCVSS 5.9≥ 12.1X46, < 12.1X46-D60≥ 12.3X48, < 12.3X48-D35+1 more2018-04-11
CVE-2018-0018 [MEDIUM] CWE-200 CVE-2018-0018: On SRX Series devices during compilation of IDP policies, an attacker sending specially crafted pack
On SRX Series devices during compilation of IDP policies, an attacker sending specially crafted packets may be able to bypass firewall rules, leading to information disclosure which an attacker may use to gain control of the target device or other internal devices, systems or services protected by the SRX Series device. This issue only applies to devi
nvd
CVE-2024-30401P3MEDIUMCVSS 5.9≥ 21.2, < 21.2R3-S1≥ 21.4, < 21.4R3+2 more2024-04-12
CVE-2024-30401 [MEDIUM] CWE-125 CVE-2024-30401: An Out-of-bounds Read vulnerability in the advanced forwarding management process aftman of Juniper
An Out-of-bounds Read vulnerability in the advanced forwarding management process aftman of Juniper Networks Junos OS on MX Series with MPC10E, MPC11, MX10K-LC9600 line cards, MX304, and EX9200-15C, may allow an attacker to exploit a stack-based buffer overflow, leading to a reboot of the FPC.
Through code review, it was determined that the interfac
nvd
CVE-2025-60011P3MEDIUMCVSS 5.8fixed in 22.4R3-S8≥ 23.2, < 23.2R2-S5+3 more2026-01-15
CVE-2025-60011 [MEDIUM] CWE-754 CVE-2025-60011: An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon
An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, network-based attacker to cause an availability impact for downstream devices.
When an affected device receives a specific optional, transitive BGP attribute over an
nvd
CVE-2026-33773P3MEDIUMCVSS 5.8≥ 23.4R2-S6, < 23.4R2-S7≥ 24.2R2-S3, < 24.2R2-S42026-04-09
CVE-2026-33773 [MEDIUM] CWE-1419 CVE-2026-33773: An Incorrect Initialization of Resource vulnerability in the packet forwarding engine (pfe) of Junip
An Incorrect Initialization of Resource vulnerability in the packet forwarding engine (pfe) of Juniper Networks Junos OS on specific EX Series and QFX Series device allows an unauthenticated, network-based attacker to cause an integrity impact to downstream networks.
When the same family inet or inet6 filter is applied on an IRB interface and on a
nvd