cbcvebase.

Juniper Networks Junos Os vulnerabilities

670 known vulnerabilities affecting juniper_networks/junos_os.

Total CVEs
670
CISA KEV
7
actively exploited
Public exploits
6
Exploited in wild
9
Severity breakdown
CRITICAL34HIGH298MEDIUM338

Vulnerabilities

Page 2 of 34
CVE-2019-0006P2CRITICALCVSS 9.8≥ 14.1X53, < 14.1X53-D47≥ 15.1X53, < 15.1X53-D50+1 more2019-01-15
CVE-2019-0006 [CRITICAL] CWE-908 CVE-2019-0006: A certain crafted HTTP packet can trigger an uninitialized function pointer deference vulnerability A certain crafted HTTP packet can trigger an uninitialized function pointer deference vulnerability in the Packet Forwarding Engine manager (fxpc) on all EX, QFX and MX Series devices in a Virtual Chassis configuration. This issue can result in a crash of the fxpc daemon or may potentially lead to remote code execution. This issue only occurs when th
nvd
CVE-2020-1647P2CRITICALCVSS 9.8≥ 18.1, < 18.1R3-S9≥ 18.2, < 18.2R3-S3+5 more2020-07-17
CVE-2020-1647 [CRITICAL] CWE-415 CVE-2020-1647: On Juniper Networks SRX Series with ICAP (Internet Content Adaptation Protocol) redirect service ena On Juniper Networks SRX Series with ICAP (Internet Content Adaptation Protocol) redirect service enabled, a double free vulnerability can lead to a Denial of Service (DoS) or Remote Code Execution (RCE) due to processing of a specific HTTP message. Continued processing of this specific HTTP message may result in an extended Denial of Service (DoS).
nvd
CVE-2020-1654P2CRITICALCVSS 9.8≥ 18.2, < 18.2R2-S7, 18.2R3-S3≥ 18.3, < 18.3R1-S7, 18.3R2-S4, 18.3R3-S1+4 more2020-07-17
CVE-2020-1654 [CRITICAL] CWE-120 CVE-2020-1654: On Juniper Networks SRX Series with ICAP (Internet Content Adaptation Protocol) redirect service ena On Juniper Networks SRX Series with ICAP (Internet Content Adaptation Protocol) redirect service enabled, processing a malformed HTTP message can lead to a Denial of Service (DoS) or Remote Code Execution (RCE) Continued processing of this malformed HTTP message may result in an extended Denial of Service (DoS) condition. The offending HTTP message
nvd
CVE-2021-0248P2CRITICALCVSS 10.0≥ unspecified, < 19.1R12021-04-22
CVE-2021-0248 [CRITICAL] CWE-798 CVE-2021-0248: This issue is not applicable to NFX NextGen Software. On NFX Series devices the use of Hard-coded Cr This issue is not applicable to NFX NextGen Software. On NFX Series devices the use of Hard-coded Credentials in Juniper Networks Junos OS allows an attacker to take over any instance of an NFX deployment. This issue is only exploitable through administrative interfaces. This issue affects: Juniper Networks Junos OS versions prior to 19.1R1 on NFX S
nvd
CVE-2018-0037P2CRITICALCVSS 9.8≥ 15.1F5-S7, < 15.1F5*≥ 15.1F6-S3, < 15.1F6*+2 more2018-07-11
CVE-2018-0037 [CRITICAL] CWE-20 CVE-2018-0037: Junos OS routing protocol daemon (RPD) process may crash and restart or may lead to remote code exec Junos OS routing protocol daemon (RPD) process may crash and restart or may lead to remote code execution while processing specific BGP NOTIFICATION messages. By continuously sending crafted BGP NOTIFICATION messages, an attacker can repeatedly crash the RPD process causing a sustained Denial of Service. Due to design improvements, this issue does no
nvd
CVE-2017-10615P3CRITICALCVSS 9.8v14.1 from 14.1R5 prior to 14.1R8-S4, 14.1R9v14.1X53 prior to 14.1X53-D50+1 more2017-10-13
CVE-2017-10615 [CRITICAL] CWE-20 CVE-2017-10615: A vulnerability in the pluggable authentication module (PAM) of Juniper Networks Junos OS may allow A vulnerability in the pluggable authentication module (PAM) of Juniper Networks Junos OS may allow an unauthenticated network based attacker to potentially execute arbitrary code or crash daemons such as telnetd or sshd that make use of PAM. Affected Juniper Networks Junos OS releases are: 14.1 from 14.1R5 prior to 14.1R8-S4, 14.1R9; 14.1X53 prior
nvd
CVE-2021-0211P3CRITICALCVSS 10.0≥ 15.1, < 15.1R7-S8≥ 17.3, < 17.3R3-S10+13 more2021-01-15
CVE-2021-0211 [CRITICAL] CWE-754 CVE-2021-0211: An improper check for unusual or exceptional conditions in Juniper Networks Junos OS and Junos OS Ev An improper check for unusual or exceptional conditions in Juniper Networks Junos OS and Junos OS Evolved Routing Protocol Daemon (RPD) service allows an attacker to send a valid BGP FlowSpec message thereby causing an unexpected change in the route advertisements within the BGP FlowSpec domain leading to disruptions in network traffic causing a Den
nvd
CVE-2020-1615P3CRITICALCVSS 9.8≥ 17.1, < 17.1R2-S11, 17.1R3-S2≥ 17.2, < 17.2R3-S3+10 more2020-04-08
CVE-2020-1615 [CRITICAL] CWE-798 CVE-2020-1615: The factory configuration for vMX installations, as shipped, includes default credentials for the ro The factory configuration for vMX installations, as shipped, includes default credentials for the root account. Without proper modification of these default credentials by the administrator, an attacker could exploit these credentials and access the vMX instance without authorization. This issue affects Juniper Networks Junos OS: 17.1 versions prior
nvd
CVE-2017-2349P3HIGHCVSS 8.8v12.1X44 prior to 12.1X44-D60v12.1X46 prior to 12.1X46-D50+3 more2017-07-17
CVE-2017-2349 [HIGH] CWE-77 CVE-2017-2349: A command injection vulnerability in the IDP feature of Juniper Networks Junos OS on SRX series devi A command injection vulnerability in the IDP feature of Juniper Networks Junos OS on SRX series devices potentially allows a user with login access to the device to execute shell commands and elevate privileges. Affected releases are Juniper Networks Junos OS 12.1X44 prior to 12.1X44-D60; 12.1X46 prior to 12.1X46-D50; 12.1X47 prior to 12.1X47-D30, 12.1X4
nvd
CVE-2019-0007P3CRITICALCVSS 10.0≥ 15.1, < 15.1F52019-01-15
CVE-2019-0007 [CRITICAL] CWE-330 CVE-2019-0007: The vMX Series software uses a predictable IP ID Sequence Number. This leaves the system as well as The vMX Series software uses a predictable IP ID Sequence Number. This leaves the system as well as clients connecting through the device susceptible to a family of attacks which rely on the use of predictable IP ID sequence numbers as their base method of attack. This issue was found during internal product security testing. Affected releases are Ju
nvd
CVE-2018-0035P3CRITICALCVSS 9.8≥ 15.1X53, < 15.1X53-D602018-07-11
CVE-2018-0035 [CRITICAL] CVE-2018-0035: QFX5200 and QFX10002 devices that have been shipped with Junos OS 15.1X53-D21, 15.1X53-D30, 15.1X53- QFX5200 and QFX10002 devices that have been shipped with Junos OS 15.1X53-D21, 15.1X53-D30, 15.1X53-D31, 15.1X53-D32, 15.1X53-D33 and 15.1X53-D60 or have been upgraded to these releases using the .bin or .iso images may contain an unintended additional Open Network Install Environment (ONIE) partition. This additional partition allows the superuser to reboo
nvd
CVE-2023-44182P3HIGHCVSS 8.8fixed in 20.4R3-S7≥ 21.1, < 21.1R3-S5+6 more2023-10-13
CVE-2023-44182 [HIGH] CWE-252 CVE-2023-44182: An Unchecked Return Value vulnerability in the user interfaces to the Juniper Networks Junos OS and An Unchecked Return Value vulnerability in the user interfaces to the Juniper Networks Junos OS and Junos OS Evolved, the CLI, the XML API, the XML Management Protocol, the NETCONF Management Protocol, the gNMI interfaces, and the J-Web User Interfaces causes unintended effects such as demotion or elevation of privileges associated with an operators ac
nvd
CVE-2020-1660P3CRITICALCVSS 9.9≥ 17.3, < 17.3R3-S8≥ 18.3, < 18.3R3-S1+4 more2020-10-16
CVE-2020-1660 [CRITICAL] CWE-362 CVE-2020-1660: When DNS filtering is enabled on Juniper Networks Junos MX Series with one of the following cards MS When DNS filtering is enabled on Juniper Networks Junos MX Series with one of the following cards MS-PIC, MS-MIC or MS-MPC, an incoming stream of packets processed by the Multiservices PIC Management Daemon (mspmand) process, responsible for managing "URL Filtering service", may crash, causing the Services PIC to restart. While the Services PIC is r
nvd
CVE-2018-0052P3HIGHCVSS 8.1≥ 12.1X46, < 12.1X46-D77≥ 12.3X48, < 12.3X48-D75+16 more2018-10-10
CVE-2018-0052 [HIGH] CWE-287 CVE-2018-0052: If RSH service is enabled on Junos OS and if the PAM authentication is disabled, a remote unauthenti If RSH service is enabled on Junos OS and if the PAM authentication is disabled, a remote unauthenticated attacker can obtain root access to the device. RSH service is disabled by default on Junos. There is no documented CLI command to enable this service. However, an undocumented CLI command allows a privileged Junos user to enable RSH service and disa
nvd
CVE-2017-2345P3CRITICALCVSS 9.8vJunos releases prior to 10.2 are not affectedv12.1X46 prior to 12.1X46-D67+14 more2017-07-17
CVE-2017-2345 [CRITICAL] CWE-20 CVE-2017-2345: On Junos OS devices with SNMP enabled, a network based attacker with unfiltered access to the RE can On Junos OS devices with SNMP enabled, a network based attacker with unfiltered access to the RE can cause the Junos OS snmpd daemon to crash and restart by sending a crafted SNMP packet. Repeated crashes of the snmpd daemon can result in a partial denial of service condition. Additionally, it may be possible to craft a malicious SNMP packet in a way
nvd
CVE-2021-0266P3CRITICALCVSS 9.8≥ unspecified, < 20.2R3≥ 20.3, < 20.3R2+1 more2021-04-22
CVE-2021-0266 [CRITICAL] CWE-321 CVE-2021-0266: The use of multiple hard-coded cryptographic keys in cSRX Series software in Juniper Networks Junos The use of multiple hard-coded cryptographic keys in cSRX Series software in Juniper Networks Junos OS allows an attacker to take control of any instance of a cSRX deployment through device management services. This issue affects: Juniper Networks Junos OS on cSRX Series: All versions prior to 20.2R3; 20.3 versions prior to 20.3R2; 20.4 versions prio
nvd
CVE-2022-22167P3CRITICALCVSS 9.8≥ 18.4, < 18.4R2-S10, 18.4R3-S10≥ 19.1, < 19.1R3-S8+9 more2022-01-19
CVE-2022-22167 [CRITICAL] CWE-863 CVE-2022-22167: A traffic classification vulnerability in Juniper Networks Junos OS on the SRX Series Services Gatew A traffic classification vulnerability in Juniper Networks Junos OS on the SRX Series Services Gateways may allow an attacker to bypass Juniper Deep Packet Inspection (JDPI) rules and access unauthorized networks or resources, when 'no-syn-check' is enabled on the device. While JDPI correctly classifies out-of-state asymmetric TCP flows as the dyn
nvd
CVE-2021-31385P3HIGHCVSS 8.8≥ 12.3, < 12.3R12-S19≥ 15.1, < 15.1R7-S10+11 more2021-10-19
CVE-2021-31385 [HIGH] CWE-22 CVE-2021-31385: An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in J An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in J-Web of Juniper Networks Junos OS allows any low-privileged authenticated attacker to elevate their privileges to root. This issue affects: Juniper Networks Junos OS 12.3 versions prior to 12.3R12-S19; 15.1 versions prior to 15.1R7-S10; 18.3 versions pri
nvd
CVE-2021-31372P3HIGHCVSS 8.8≥ unspecified, < 18.3R3-S5≥ 18.4, < 18.4R3-S9+10 more2021-10-19
CVE-2021-31372 [HIGH] CWE-20 CVE-2021-31372: An Improper Input Validation vulnerability in J-Web of Juniper Networks Junos OS allows a locally au An Improper Input Validation vulnerability in J-Web of Juniper Networks Junos OS allows a locally authenticated J-Web attacker to escalate their privileges to root over the target device. This issue affects: Juniper Networks Junos OS All versions prior to 18.3R3-S5; 18.4 versions prior to 18.4R3-S9; 19.1 versions prior to 19.1R3-S6; 19.2 versions prior
nvd
CVE-2025-59968P3HIGHCVSS 8.6v02025-10-09
CVE-2025-59968 [HIGH] CWE-862 CVE-2025-59968: A Missing Authorization vulnerability in the Juniper Networks Junos Space Security Director allows a A Missing Authorization vulnerability in the Juniper Networks Junos Space Security Director allows an unauthenticated network-based attacker to read or modify metadata via the web interface. Tampering with this metadata can result in managed SRX Series devices permitting network traffic that should otherwise be blocked by policy, effectively bypassi
nvd
Juniper Networks Junos Os vulnerabilities | cvebase