Vulnerabilities in Juniper Networks

893 results
Vexday analysis

Com 893 CVEs catalogadas e 7 confirmadas em exploração ativa pelo CISA KEV, a taxa de exploração de dispositivos Juniper Networks está 1,7× acima da média geral do catálogo, o que indica risco operacional elevado para organizações que dependem dessas soluções. A CVE mais crítica em exploração ativa no momento é CVE-2023-36846, com escore EPSS de 0,9421 — valor que sinaliza altíssima probabilidade de exploração em curto prazo e deve concentrar esforços imediatos de remediação. O tipo de falha mais recorrente, CWE-754 (verificação inadequada de condições excepcionais), aponta para uma fragilidade estrutural de tratamento de erros que tende a se manifestar em múltiplos componentes. Com 38 CVEs de severidade crítica, 4 com prova de conceito pública disponível e 27 vulnerabilidades surgidas nos últimos 90 dias, o ritmo de exposição recente exige monitoramento contínuo e priorização ativa de patches.

CVE-2018-0014MEDIUMScreenOS: Etherleak vulnerability found on ScreenOS deviceEPSS 0.6%CVE-2024-30398HIGHJunos OS: SRX4600 Series - A high amount of specific traffic causes packet drops and an eventual PFE crashEPSS 0.6%CVE-2018-0055MEDIUMJunos OS: jdhcpd process crash during processing of specially crafted DHCPv6 messageEPSS 0.6%CVE-2022-22186HIGHJunos OS: EX4650 Series: Certain traffic received by the Junos OS device on the management interface may be forwarded to egress interfaces instead of discardedEPSS 0.6%CVE-2024-47504HIGHJunos OS: SRX5000 Series: Receipt of a specific malformed packet will cause a flowd crashEPSS 0.6%CVE-2024-39552HIGHJunos OS and Junos OS Evolved: Malformed BGP UPDATE causes RPD crashEPSS 0.6%CVE-2022-22173HIGHJunos OS: CRL failing to download causes a memory leak and ultimately a DoSEPSS 0.6%CVE-2025-21599HIGHJunos OS Evolved: Receipt of specifically malformed IPv6 packets causes kernel memory exhaustion leading to Denial of ServiceEPSS 0.6%CVE-2019-0053HIGHJunos OS: Insufficient validation of environment variables in telnet client may lead to stack-based buffer overflowEPSS 0.6%CVE-2019-0054MEDIUMJunos OS: SRX Series: An attacker may be able to perform Man-in-the-Middle (MitM) attacks during app-id signature updates.EPSS 0.6%CVE-2024-21611HIGHJunos OS and Junos OS Evolved: In a jflow scenario continuous route churn will cause a memory leak and eventually an rpd crashEPSS 0.6%CVE-2022-22235MEDIUMJunos OS: SRX Series: A flowd core will be observed when malformed GPRS traffic is processedEPSS 0.6%CVE-2021-31382MEDIUMJunos OS: PTX1000 System, PTX10002-60C System: After upgrading, configured firewall filters may be applied on incorrect interfacesEPSS 0.6%CVE-2023-44182HIGHJunos OS and Junos OS Evolved: An Unchecked Return Value in multiple users interfaces affects confidentiality and integrity of device operationsEPSS 0.6%CVE-2024-30401HIGHJunos OS: MX Series and EX9200-15C: Stack-based buffer overflow in aftmanEPSS 0.6%CVE-2024-47497HIGHJunos OS: SRX Series, QFX Series, MX Series and EX Series: Receiving specific HTTPS traffic causes resource exhaustionEPSS 0.6%CVE-2020-1675HIGHJuniper Networks Mist Cloud UI: SAML authentication certificate vulnerability.EPSS 0.6%CVE-2022-22247HIGHJunos OS Evolved: Kernel processing of unvalidated TCP segments could lead to a Denial of Service (DoS)EPSS 0.6%CVE-2024-47491HIGHJunos OS and Junos OS Evolved: Receipt of a specific malformed BGP path attribute leads to an RPD crashEPSS 0.6%CVE-2017-2342HIGHSRX Series: MACsec failure to report errorsEPSS 0.6%