Juniper Networks Junos Os vulnerabilities
670 known vulnerabilities affecting juniper_networks/junos_os.
Total CVEs
670
CISA KEV
7
actively exploited
Public exploits
6
Exploited in wild
10
Severity breakdown
CRITICAL34HIGH298MEDIUM338
Vulnerabilities
Page 20 of 34
CVE-2018-0004P4MEDIUMCVSS 6.5≥ 12.1X46, < 12.1X46-D50≥ 12.3X48, < 12.3X48-D30+7 more2018-01-10
CVE-2018-0004 [MEDIUM] CWE-400 CVE-2018-0004: A sustained sequence of different types of normal transit traffic can trigger a high CPU consumption
A sustained sequence of different types of normal transit traffic can trigger a high CPU consumption denial of service condition in the Junos OS register and schedule software interrupt handler subsystem when a specific command is issued to the device. This affects one or more threads and conversely one or more running processes running on the system.
nvd
CVE-2018-0034P4MEDIUMCVSS 5.9≥ 12.3X48, < 12.3X48-D70≥ 15.1X49, < 15.1X49-D140+13 more2018-07-11
CVE-2018-0034 [MEDIUM] CWE-20 CVE-2018-0034: A Denial of Service vulnerability exists in the Juniper Networks Junos OS JDHCPD daemon which allows
A Denial of Service vulnerability exists in the Juniper Networks Junos OS JDHCPD daemon which allows an attacker to core the JDHCPD daemon by sending a crafted IPv6 packet to the system. This issue is limited to systems which receives IPv6 DHCP packets on a system configured for DHCP processing using the JDHCPD daemon. This issue does not affect IPv4 D
nvd
CVE-2026-33801P4MEDIUMCVSS 6.5≥ 25.2, < 25.2R22026-07-09
CVE-2026-33801 [MEDIUM] CWE-754 CVE-2026-33801: An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon
An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon (RPD) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent, unauthenticated attacker sending a specific BGP update over an established BGP session to cause a Denial-of-Service (DoS).
Upon receipt of a specifically malformed non-inet/
nvd
CVE-2026-57019P4MEDIUMCVSS 6.5fixed in 23.2R2-S6≥ 23.4, < 23.4R2-S7+3 more2026-07-09
CVE-2026-57019 [MEDIUM] CWE-1284 CVE-2026-57019: An Improper Validation of Specified Quantity in Input vulnerability in the Packet Forwarding Engine
An Improper Validation of Specified Quantity in Input vulnerability in the Packet Forwarding Engine (pfe) of Juniper Networks Junos OS on MX Series allows an unauthenticated, adjacent attacker to cause a Denial-of-Service (DoS).
When a specific packet is received from device in the same broadcast domain, an affected system calculates the packet si
nvd
CVE-2026-57020P4MEDIUMCVSS 6.5fixed in 23.2R2-S7≥ 23.4, < 23.4R2-S8+2 more2026-07-09
CVE-2026-57020 [MEDIUM] CWE-754 CVE-2026-57020: An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding engin
An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding engine (pfe) of Juniper Networks Junos OS on QFX10000 Series allows an unauthenticated, adjacent attacker to cause a Denial-of-Service (DoS).
On all QFX10000 platforms in an EVPN-VxLAN scenario, if an attacker sends IPv6 multicast traffic and these packet
nvd
CVE-2026-0203P4MEDIUMCVSS 6.5fixed in 21.2R3-S9≥ 21.4, < 21.4R3-S10+6 more2026-01-15
CVE-2026-0203 [MEDIUM] CWE-755 CVE-2026-0203: An Improper Handling of Exceptional Conditions vulnerability in packet processing of Juniper Network
An Improper Handling of Exceptional Conditions vulnerability in packet processing of Juniper Networks Junos OS allows an unauthenticated, network-adjacent attacker sending a specifically malformed ICMP packet to cause an FPC to crash and restart, resulting in a Denial of Service (DoS).
When an ICMP packet is received with a specifically malformed IP
nvd
CVE-2016-1261P4HIGHCVSS 8.8v12.1X44 prior to 12.1X44-D55v12.1X46 prior to 12.1X46-D45+10 more2017-10-13
CVE-2016-1261 [HIGH] CWE-352 CVE-2016-1261: J-Web does not validate certain input that may lead to cross-site request forgery (CSRF) issues or c
J-Web does not validate certain input that may lead to cross-site request forgery (CSRF) issues or cause a denial of J-Web service (DoS).
nvd
CVE-2018-0051P4MEDIUMCVSS 5.9≥ 12.1X46, < 12.1X46-D77≥ 12.3X48, < 12.3X48-D70+9 more2018-10-10
CVE-2018-0051 [MEDIUM] CWE-20 CVE-2018-0051: A Denial of Service vulnerability in the SIP application layer gateway (ALG) component of Junos OS b
A Denial of Service vulnerability in the SIP application layer gateway (ALG) component of Junos OS based platforms allows an attacker to crash MS-PIC, MS-MIC, MS-MPC, MS-DPC or SRX flow daemon (flowd) process. This issue affects Junos OS devices with NAT or stateful firewall configuration in combination with the SIP ALG enabled. SIP ALG is enabled by d
nvd
CVE-2020-1669P4MEDIUMCVSS 6.3≥ 19.4, < 19.4R3≥ 20.1, < 20.1R1-S4, 20.1R22020-10-16
CVE-2020-1669 [MEDIUM] CWE-256 CVE-2020-1669: The Juniper Device Manager (JDM) container, used by the disaggregated Junos OS architecture on Junip
The Juniper Device Manager (JDM) container, used by the disaggregated Junos OS architecture on Juniper Networks NFX350 Series devices, stores password hashes in the world-readable file /etc/passwd. This is not a security best current practice as it can allow an attacker with access to the local filesystem the ability to brute-force decrypt password ha
nvd
CVE-2024-47491P4MEDIUMCVSS 5.9fixed in 21.4R3-S8≥ 22.2, < 22.2R3-S4+3 more2024-10-11
CVE-2024-47491 [MEDIUM] CWE-755 CVE-2024-47491: An Improper Handling of Exceptional Conditions vulnerability in the Routing Protocol Daemon (rpd) of
An Improper Handling of Exceptional Conditions vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a network-based, unauthenticated attacker to cause Denial of Service (DoS).
When a BGP UPDATE with malformed path attribute is received over an established BGP session, rpd crashes and restarts.
nvd
CVE-2022-22208P4MEDIUMCVSS 5.9≥ unspecified, < 18.4R2-S9, 18.4R3-S11≥ 19.1, < 19.1R3-S8+9 more2022-10-18
CVE-2022-22208 [MEDIUM] CWE-416 CVE-2022-22208: A Use After Free vulnerability in the Routing Protocol Daemon (rdp) of Juniper Networks Junos OS and
A Use After Free vulnerability in the Routing Protocol Daemon (rdp) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated network-based attacker to cause Denial of Service (DoS). When a BGP session flap happens, a Use After Free of a memory location that was assigned to another object can occur, which will lead to an rpd crash.
nvd
CVE-2024-39554P4MEDIUMCVSS 5.9≥ 21.1, < 21.1*≥ 21.2, < 21.2R3-S7+6 more2024-07-10
CVE-2024-39554 [MEDIUM] CWE-362 CVE-2024-39554: A Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulner
A Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability the
Routing Protocol Daemon (rpd)
of Juniper Networks Junos OS and Juniper Networks Junos OS Evolved allows an unauthenticated, network-based attacker to inject incremental routing updates when BGP multipath is enabled, causing rpd to crash
nvd
CVE-2024-47506P4MEDIUMCVSS 5.9fixed in 21.3R3-S1≥ 21.4, < 21.4R3+2 more2024-10-11
CVE-2024-47506 [MEDIUM] CWE-833 CVE-2024-47506: A Deadlock vulnerability in the packet forwarding engine (PFE) of Juniper Networks Junos OS on SRX S
A Deadlock vulnerability in the packet forwarding engine (PFE) of Juniper Networks Junos OS on SRX Series allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS).
When a large amount of traffic is processed by ATP Cloud inspection, a deadlock can occur which will result in a PFE crash and restart. Whether the crash occu
nvd
CVE-2024-39561P4MEDIUMCVSS 5.8fixed in 21.2R3-S8≥ 21.4, < 21.4R3-S7+6 more2024-07-10
CVE-2024-39561 [MEDIUM] CWE-754 CVE-2024-39561: An Improper Check for Unusual or Exceptional Conditions vulnerability in the flow daemon (flowd) of
An Improper Check for Unusual or Exceptional Conditions vulnerability in the flow daemon (flowd) of Juniper Networks Junos OS on
SRX4600 and SRX5000 Series
allows an attacker to send TCP packets with
SYN/FIN or SYN/RST
flags, bypassing the expected blocking of these packets.
A TCP packet with SYN/FIN or SYN/RST should be dropped in flowd. Howeve
nvd
CVE-2024-39533P4MEDIUMCVSS 5.8fixed in 21.2R3-S7≥ 21.4, < 21.4R3-S6+5 more2024-07-11
CVE-2024-39533 [MEDIUM] CWE-447 CVE-2024-39533: An Unimplemented or Unsupported Feature in the UI vulnerability in Juniper Networks Junos OS on QFX5
An Unimplemented or Unsupported Feature in the UI vulnerability in Juniper Networks Junos OS on QFX5000 Series and EX4600 Series allows an unauthenticated, network-based attacker to cause a minor integrity impact to downstream networks.If one or more of the following match conditions
ip-source-address
ip-destination-address
arp-type
which are not
nvd
CVE-2025-60010P4MEDIUMCVSS 5.4fixed in 22.4R3-S8≥ 23.2, < 23.2R2-S4+3 more2025-10-09
CVE-2025-60010 [MEDIUM] CWE-262 CVE-2025-60010: A password aging vulnerability in the RADIUS client of Juniper Networks Junos OS and Junos OS Evolve
A password aging vulnerability in the RADIUS client of Juniper Networks Junos OS and Junos OS Evolved allows an authenticated, network-based attacker to access the device without enforcing the required password change.
Affected devices allow logins by users for whom the RADIUS server has responded with a reject and required the user to change the p
nvd
CVE-2026-57024P4MEDIUMCVSS 5.3fixed in 23.2R2-S7≥ 23.4, < 23.4R2-S6+3 more2026-07-09
CVE-2026-57024 [MEDIUM] CWE-694 CVE-2026-57024: A Use of Multiple Resources with Duplicate Identifier vulnerability in the IKE daemon (iked) of Juni
A Use of Multiple Resources with Duplicate Identifier vulnerability in the IKE daemon (iked) of Juniper Networks Junos OS on MX with SPC3 and SRX Series allows an unauthenticated, network-based attacker to cause a Denial-of-Service (DoS).
On an MX with SPC3 and SRX devices configured for VPN service, when a large number of VPN negotiations fail a
nvd
CVE-2021-31360P4HIGHCVSS 7.1≥ 15.1, < 15.1R7-S10≥ 17.4, < 17.4R3-S5+11 more2021-10-19
CVE-2021-31360 [HIGH] CWE-20 CVE-2021-31360: An improper privilege management vulnerability in the Juniper Networks Junos OS and Junos OS Evolved
An improper privilege management vulnerability in the Juniper Networks Junos OS and Junos OS Evolved command-line interpreter (CLI) allows a low-privileged user to overwrite local files as root, possibly leading to a system integrity issue or Denial of Service (DoS). Depending on the files overwritten, exploitation of this vulnerability could lead to a
nvd
CVE-2018-0053P4MEDIUMCVSS 6.8≥ 15.1X49, < 15.1X49-D302018-10-10
CVE-2018-0053 [MEDIUM] CWE-287 CVE-2018-0053: An authentication bypass vulnerability in the initial boot sequence of Juniper Networks Junos OS on
An authentication bypass vulnerability in the initial boot sequence of Juniper Networks Junos OS on vSRX Series may allow an attacker to gain full control of the system without authentication when the system is initially booted up. Affected releases are Juniper Networks Junos OS: 15.1X49 versions prior to 15.1X49-D30 on vSRX.
nvd
CVE-2018-0027P4MEDIUMCVSS 5.9≥ 16.1, < 16.1R32018-07-11
CVE-2018-0027 [MEDIUM] CWE-20 CVE-2018-0027: Receipt of a crafted or malformed RSVP PATH message may cause the routing protocol daemon (RPD) to h
Receipt of a crafted or malformed RSVP PATH message may cause the routing protocol daemon (RPD) to hang or crash. When RPD is unavailable, routing updates cannot be processed which can lead to an extended network outage. If RSVP is not enabled on an interface, then the issue cannot be triggered via that interface. This issue only affects Juniper Networ
nvd