cbcvebase.

Juniper Networks Junos Os vulnerabilities

670 known vulnerabilities affecting juniper_networks/junos_os.

Total CVEs
670
CISA KEV
7
actively exploited
Public exploits
6
Exploited in wild
9
Severity breakdown
CRITICAL34HIGH298MEDIUM338

Vulnerabilities

Page 21 of 34
CVE-2026-0203P4MEDIUMCVSS 6.5fixed in 21.2R3-S9≥ 21.4, < 21.4R3-S10+6 more2026-01-15
CVE-2026-0203 [MEDIUM] CWE-755 CVE-2026-0203: An Improper Handling of Exceptional Conditions vulnerability in packet processing of Juniper Network An Improper Handling of Exceptional Conditions vulnerability in packet processing of Juniper Networks Junos OS allows an unauthenticated, network-adjacent attacker sending a specifically malformed ICMP packet to cause an FPC to crash and restart, resulting in a Denial of Service (DoS). When an ICMP packet is received with a specifically malformed IP
nvd
CVE-2026-57019P4MEDIUMCVSS 6.5fixed in 23.2R2-S6≥ 23.4, < 23.4R2-S7+3 more2026-07-09
CVE-2026-57019 [MEDIUM] CWE-1284 CVE-2026-57019: An Improper Validation of Specified Quantity in Input vulnerability in the Packet Forwarding Engine An Improper Validation of Specified Quantity in Input vulnerability in the Packet Forwarding Engine (pfe) of Juniper Networks Junos OS on MX Series allows an unauthenticated, adjacent attacker to cause a Denial-of-Service (DoS). When a specific packet is received from device in the same broadcast domain, an affected system calculates the packet si
nvd
CVE-2026-57020P4MEDIUMCVSS 6.5fixed in 23.2R2-S7≥ 23.4, < 23.4R2-S8+2 more2026-07-09
CVE-2026-57020 [MEDIUM] CWE-754 CVE-2026-57020: An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding engin An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding engine (pfe) of Juniper Networks Junos OS on QFX10000 Series allows an unauthenticated, adjacent attacker to cause a Denial-of-Service (DoS). On all QFX10000 platforms in an EVPN-VxLAN scenario, if an attacker sends IPv6 multicast traffic and these packet
nvd
CVE-2026-33801P4MEDIUMCVSS 6.5≥ 25.2, < 25.2R22026-07-09
CVE-2026-33801 [MEDIUM] CWE-754 CVE-2026-33801: An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon (RPD) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent, unauthenticated attacker sending a specific BGP update over an established BGP session to cause a Denial-of-Service (DoS). Upon receipt of a specifically malformed non-inet/
nvd
CVE-2018-0051P4MEDIUMCVSS 5.9≥ 12.1X46, < 12.1X46-D77≥ 12.3X48, < 12.3X48-D70+9 more2018-10-10
CVE-2018-0051 [MEDIUM] CWE-20 CVE-2018-0051: A Denial of Service vulnerability in the SIP application layer gateway (ALG) component of Junos OS b A Denial of Service vulnerability in the SIP application layer gateway (ALG) component of Junos OS based platforms allows an attacker to crash MS-PIC, MS-MIC, MS-MPC, MS-DPC or SRX flow daemon (flowd) process. This issue affects Junos OS devices with NAT or stateful firewall configuration in combination with the SIP ALG enabled. SIP ALG is enabled by d
nvd
CVE-2018-0019P4MEDIUMCVSS 5.9≥ 12.1X46, < 12.1X46-D76≥ 12.3, < 12.3R12-S7, 12.3R13+11 more2018-04-11
CVE-2018-0019 [MEDIUM] CWE-20 CVE-2018-0019: A vulnerability in Junos OS SNMP MIB-II subagent daemon (mib2d) may allow a remote network based att A vulnerability in Junos OS SNMP MIB-II subagent daemon (mib2d) may allow a remote network based attacker to cause the mib2d process to crash resulting in a denial of service condition (DoS) for the SNMP subsystem. While a mib2d process crash can disrupt the network monitoring via SNMP, it does not impact routing, switching or firewall functionalities.
nvd
CVE-2018-0009P4MEDIUMCVSS 5.9≥ 12.1X46, < 12.1X46-D71≥ 12.3X48, < 12.3X48-D55+1 more2018-01-10
CVE-2018-0009 [MEDIUM] CVE-2018-0009: On Juniper Networks SRX series devices, firewall rules configured to match custom application UUIDs On Juniper Networks SRX series devices, firewall rules configured to match custom application UUIDs starting with zeros can match all TCP traffic. Due to this issue, traffic that should have been blocked by other rules is permitted to flow through the device resulting in a firewall bypass condition. Affected releases are Juniper Networks Junos OS: 12.1X46 vers
nvd
CVE-2018-0031P4MEDIUMCVSS 5.9≥ 12.1X46, < 12.1X46-D76≥ 12.3X48, < 12.3X48-D66, 12.3X48-D70+17 more2018-07-11
CVE-2018-0031 [MEDIUM] CWE-400 CVE-2018-0031: Receipt of specially crafted UDP/IP packets over MPLS may be able to bypass a stateless firewall fil Receipt of specially crafted UDP/IP packets over MPLS may be able to bypass a stateless firewall filter. The crafted UDP packets must be encapsulated and meet a very specific packet format to be classified in a way that bypasses IP firewall filter rules. The packets themselves do not cause a service interruption (e.g. RPD crash), but receipt of a high
nvd
CVE-2018-0061P4MEDIUMCVSS 5.3≥ 12.1X46, < 12.1X46-D81≥ 12.3X48, < 12.3X48-D80+15 more2018-10-10
CVE-2018-0061 [MEDIUM] CWE-400 CVE-2018-0061: A denial of service vulnerability in the telnetd service on Junos OS allows remote unauthenticated u A denial of service vulnerability in the telnetd service on Junos OS allows remote unauthenticated users to cause high CPU usage which may affect system performance. Affected releases are Juniper Networks Junos OS: 12.1X46 versions prior to 12.1X46-D81 on SRX Series; 12.3 versions prior to 12.3R12-S11; 12.3X48 versions prior to 12.3X48-D80 on SRX Seri
nvd
CVE-2022-22213P4MEDIUMCVSS 5.9≥ 21.1, < 21.1R3-S1≥ 21.2, < 21.2R2-S2, 21.2R3+2 more2022-07-20
CVE-2022-22213 [MEDIUM] CWE-232 CVE-2022-22213: A vulnerability in Handling of Undefined Values in the routing protocol daemon (RPD) process of Juni A vulnerability in Handling of Undefined Values in the routing protocol daemon (RPD) process of Juniper Networks Junos OS and Junos OS Evolved may allow an unauthenticated network-based attacker to crash the RPD process by sending a specific BGP update while the system is under heavy load, leading to a Denial of Service (DoS). Continued receipt and
nvd
CVE-2024-21585P4MEDIUMCVSS 5.9fixed in 20.4R3-S9≥ 21.2, < 21.2R3-S7+7 more2024-01-12
CVE-2024-21585 [MEDIUM] CWE-755 CVE-2024-21585: An Improper Handling of Exceptional Conditions vulnerability in BGP session processing of Juniper N An Improper Handling of Exceptional Conditions vulnerability in BGP session processing of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated network-based attacker, using specific timing outside the attacker's control, to flap BGP sessions and cause the routing protocol daemon (rpd) process to crash and restart, leading to a Den
nvd
CVE-2022-22219P4MEDIUMCVSS 5.9≥ 21.3, < 21.3R3-S2≥ 21.4, < 21.4R2-S2, 21.4R3+2 more2022-10-18
CVE-2022-22219 [MEDIUM] CWE-241 CVE-2022-22219: Due to the Improper Handling of an Unexpected Data Type in the processing of EVPN routes on Juniper Due to the Improper Handling of an Unexpected Data Type in the processing of EVPN routes on Juniper Networks Junos OS and Junos OS Evolved, an attacker in direct control of a BGP client connected to a route reflector, or via a machine in the middle (MITM) attack, can send a specific EVPN route contained within a BGP Update, triggering a routing proto
nvd
CVE-2022-22220P4MEDIUMCVSS 5.9≥ 18.4, < 18.4R2-S10, 18.4R3-S10≥ 19.1, < 19.1R3-S7+6 more2022-10-18
CVE-2022-22220 [MEDIUM] CWE-367 CVE-2022-22220: A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Routing Protocol Daemon (rpd) o A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Routing Protocol Daemon (rpd) of Juniper Networks Junos OS, Junos OS Evolved allows a network-based unauthenticated attacker to cause a Denial of Service (DoS). When a BGP flow route with redirect IP extended community is received, and the reachability to the next-hop of the corres
nvd
CVE-2022-22225P4MEDIUMCVSS 5.9≥ 20.2, < 20.2R3-S4≥ 20.3, < 20.3R3-S3+4 more2022-10-18
CVE-2022-22225 [MEDIUM] CWE-367 CVE-2022-22225: A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in the Routing Protocol Daemon (rp A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated attacker with an established BGP session to cause a Denial of Service (DoS). In a BGP multipath scenario, when one of the contributing routes is flapping often and rapidly,
nvd
CVE-2025-52948P4MEDIUMCVSS 5.9fixed in 21.2R3-S9≥ 21.4, < 21.4R3-S10+5 more2025-07-11
CVE-2025-52948 [MEDIUM] CWE-755 CVE-2025-52948: An Improper Handling of Exceptional Conditions vulnerability in Berkeley Packet Filter (BPF) process An Improper Handling of Exceptional Conditions vulnerability in Berkeley Packet Filter (BPF) processing of Juniper Networks Junos OS allows an attacker, in rare cases, sending specific, unknown traffic patterns to cause the FPC and system to crash and restart. BPF provides a raw interface to data link layers in a protocol independent fashion. Inter
nvd
CVE-2022-22208P4MEDIUMCVSS 5.9≥ unspecified, < 18.4R2-S9, 18.4R3-S11≥ 19.1, < 19.1R3-S8+9 more2022-10-18
CVE-2022-22208 [MEDIUM] CWE-416 CVE-2022-22208: A Use After Free vulnerability in the Routing Protocol Daemon (rdp) of Juniper Networks Junos OS and A Use After Free vulnerability in the Routing Protocol Daemon (rdp) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated network-based attacker to cause Denial of Service (DoS). When a BGP session flap happens, a Use After Free of a memory location that was assigned to another object can occur, which will lead to an rpd crash.
nvd
CVE-2022-22244P4MEDIUMCVSS 5.3≥ unspecified, < 19.1R3-S9≥ 19.2, < 19.2R3-S6+11 more2022-10-18
CVE-2022-22244 [MEDIUM] CWE-91 CVE-2022-22244: An XPath Injection vulnerability in the J-Web component of Juniper Networks Junos OS allows an unaut An XPath Injection vulnerability in the J-Web component of Juniper Networks Junos OS allows an unauthenticated attacker sending a crafted POST to reach the XPath channel, which may allow chaining to other unspecified vulnerabilities, leading to a partial loss of confidentiality. This issue affects Juniper Networks Junos OS: all versions prior to 19.1
nvd
CVE-2025-30657P4MEDIUMCVSS 5.3fixed in 21.2R3-S9≥ 21.4, < 21.4R3-S10+3 more2025-04-09
CVE-2025-30657 [MEDIUM] CWE-116 CVE-2025-30657: An Improper Encoding or Escaping of Output vulnerability in the Sampling Route Record Daemon (SRRD) An Improper Encoding or Escaping of Output vulnerability in the Sampling Route Record Daemon (SRRD) of Juniper Networks Junos OS allows an unauthenticated, network-based attacker to cause a Denial-of-Service (DoS). When a device configured for flow-monitoring receives a specific BGP update message, it is correctly processed internally by the routing
nvd
CVE-2026-57024P4MEDIUMCVSS 5.3fixed in 23.2R2-S7≥ 23.4, < 23.4R2-S6+3 more2026-07-09
CVE-2026-57024 [MEDIUM] CWE-694 CVE-2026-57024: A Use of Multiple Resources with Duplicate Identifier vulnerability in the IKE daemon (iked) of Juni A Use of Multiple Resources with Duplicate Identifier vulnerability in the IKE daemon (iked) of Juniper Networks Junos OS on MX with SPC3 and SRX Series allows an unauthenticated, network-based attacker to cause a Denial-of-Service (DoS). On an MX with SPC3 and SRX devices configured for VPN service, when a large number of VPN negotiations fail a
nvd
CVE-2020-1618P4MEDIUMCVSS 6.8≥ 14.1X53, < 14.1X53-D53≥ 15.1, < 15.1R7-S4+9 more2020-04-08
CVE-2020-1618 [MEDIUM] CWE-288 CVE-2020-1618: On Juniper Networks EX and QFX Series, an authentication bypass vulnerability may allow a user conne On Juniper Networks EX and QFX Series, an authentication bypass vulnerability may allow a user connected to the console port to login as root without any password. This issue might only occur in certain scenarios: • At the first reboot after performing device factory reset using the command “request system zeroize”; or • A temporary moment during the
nvd