Vulnerabilities in Juniper Networks

915 results
Vexday analysis

Com 893 CVEs catalogadas e 7 confirmadas em exploração ativa pelo CISA KEV, a taxa de exploração de dispositivos Juniper Networks está 1,7× acima da média geral do catálogo, o que indica risco operacional elevado para organizações que dependem dessas soluções. A CVE mais crítica em exploração ativa no momento é CVE-2023-36846, com escore EPSS de 0,9421 — valor que sinaliza altíssima probabilidade de exploração em curto prazo e deve concentrar esforços imediatos de remediação. O tipo de falha mais recorrente, CWE-754 (verificação inadequada de condições excepcionais), aponta para uma fragilidade estrutural de tratamento de erros que tende a se manifestar em múltiplos componentes. Com 38 CVEs de severidade crítica, 4 com prova de conceito pública disponível e 27 vulnerabilidades surgidas nos últimos 90 dias, o ritmo de exposição recente exige monitoramento contínuo e priorização ativa de patches.

CVE-2021-31377MEDIUMJunos OS: A local authenticated attacker can cause RPD to coreEPSS 0.2%CVE-2024-39544MEDIUMJunos OS Evolved: Low privileged local user able to view NETCONF traceoptions filesEPSS 0.2%CVE-2026-33775HIGHJunos OS: MX Series: Mismatch between configured and received packet types causes memory leak in bbe-smgdEPSS 0.2%CVE-2023-36840MEDIUMJunos OS and Junos OS Evolved: An rpd crash occurs when a specific L2VPN command is runEPSS 0.2%CVE-2026-57029MEDIUMJunos OS Evolved: QFX Series: When sFlow collector reachability changes evo-pfemand process can crashEPSS 0.2%CVE-2022-22248HIGHJunos OS Evolved: Incorrect file permissions can allow low-privileged user to cause another user to execute arbitrary commandsEPSS 0.2%CVE-2025-59957HIGHJunos OS: EX4600 Series and QFX5000 Series: An attacker with physical access can open a persistent backdoorEPSS 0.2%CVE-2019-0071HIGHJunos OS: EX2300, EX3400 Series: Veriexec signature checking not enforced in specific versions of Junos OSEPSS 0.2%CVE-2023-36838MEDIUMJunos OS: SRX Series: A flowd core occurs when running a low privileged CLI commandEPSS 0.2%CVE-2024-39546HIGHJunos OS Evolved: Local low-privilege user can gain root permissions leading to privilege escalationEPSS 0.2%CVE-2022-22239HIGHJunos OS Evolved: The ssh CLI command always runs as root which can lead to privilege escalationEPSS 0.2%CVE-2023-22397MEDIUMJunos OS Evolved: PTX10003: An attacker sending specific genuine packets will cause a memory leak in the PFE leading to a Denial of ServiceEPSS 0.2%CVE-2025-59969HIGHJunos OS Evolved: QFX5000 Series and PTX Series: An attacker sending crafted multicast packets will cause evo-aftmand / evo-pfemand to crash and restartEPSS 0.2%CVE-2023-44189MEDIUMJunos OS Evolved: PTX10003 Series: MAC address validation bypass vulnerabilityEPSS 0.2%CVE-2024-30378MEDIUMJunos OS: MX Series: bbe-smgd process crash upon execution of specific CLI commandsEPSS 0.2%CVE-2022-22234MEDIUMJunos OS: EX2300 and EX3400 Series: One of more SFPs might become unavailable when the system is very busyEPSS 0.2%CVE-2025-60010MEDIUMJunos OS and Junos OS Evolved: Device allows login for user with expired passwordEPSS 0.2%CVE-2025-59962MEDIUMJunos OS and Junos OS Evolved: With BGP sharding enabled, change in indirect next-hop can cause RPD crashEPSS 0.2%CVE-2022-22233MEDIUMJunos OS and Junos OS Evolved: In an SR to LDP interworking scenario, with SRMS, when a specific low privileged command is issued on an ABR rpd will crashEPSS 0.2%CVE-2026-33774MEDIUMJunos OS: MX Series: Firewall filters on lo0.<non-0> in the default routing instance are not in effectEPSS 0.2%