Vulnerabilidades em Juniper Networks

915 resultados
Análise Vexday

Com 893 CVEs catalogadas e 7 confirmadas em exploração ativa pelo CISA KEV, a taxa de exploração de dispositivos Juniper Networks está 1,7× acima da média geral do catálogo, o que indica risco operacional elevado para organizações que dependem dessas soluções. A CVE mais crítica em exploração ativa no momento é CVE-2023-36846, com escore EPSS de 0,9421 — valor que sinaliza altíssima probabilidade de exploração em curto prazo e deve concentrar esforços imediatos de remediação. O tipo de falha mais recorrente, CWE-754 (verificação inadequada de condições excepcionais), aponta para uma fragilidade estrutural de tratamento de erros que tende a se manifestar em múltiplos componentes. Com 38 CVEs de severidade crítica, 4 com prova de conceito pública disponível e 27 vulnerabilidades surgidas nos últimos 90 dias, o ritmo de exposição recente exige monitoramento contínuo e priorização ativa de patches.

CVE-2020-1624MEDIUMJunos OS Evolved: objmon logs may leak sensitive informationEPSS 0.3%CVE-2020-1623MEDIUMJunos OS Evolved: ev.ops file may leak sensitive informationEPSS 0.3%CVE-2020-1622MEDIUMJunos OS Evolved: EvoSharedObjStore may leak sensitive informationEPSS 0.3%CVE-2020-1620MEDIUMJunos OS Evolved: Configd leaks hashes via log file and is world readableEPSS 0.3%CVE-2026-21908HIGHJunos OS and Junos OS Evolved: Use after free vulnerability In 802.1X authentication daemon can cause crash of the dot1xd processEPSS 0.3%CVE-2021-0212MEDIUMContrail Networking: Administrator credentials are exposed in a plaintext fileEPSS 0.3%CVE-2016-4924HIGHvMX: Information leak vulnerabilityEPSS 0.3%CVE-2024-39561MEDIUMJunos OS: SRX4600, SRX5000 Series: TCP packets with SYN/FIN or SYN/RST are transferred after enabling no-syn-check with Express PathEPSS 0.3%CVE-2026-33773MEDIUMJunos OS: EX Series, QFX Series: If the same egress filter is configured on both an IRB and a physical interface one of those is not appliedEPSS 0.3%CVE-2022-22250MEDIUMJunos OS and Junos OS Evolved: An FPC crash might be seen due to an EVPN MAC entry moving from local to remoteEPSS 0.3%CVE-2022-22224MEDIUMJunos OS and Junos OS Evolved: PPMD goes into infinite loop upon receipt of malformed OSPF TLVEPSS 0.3%CVE-2024-30380HIGHJunos OS and Junos OS Evolved: l2cpd crash upon receipt of a specific TLVEPSS 0.3%CVE-2023-22406MEDIUMJunos OS and Junos OS Evolved: A memory leak which will ultimately lead to an rpd crash will be observed when a peer interface flaps continuously in a Segment Routing scenario using OSPFEPSS 0.3%CVE-2023-22414MEDIUMJunos OS: PTX Series and QFX10000 Series: An FPC memory leak is observed when specific EVPN VXLAN Multicast packets are processedEPSS 0.3%CVE-2023-22407MEDIUMJunos OS and Junos OS Evolved: An RPD crash can happen due to an MPLS TE tunnel configuration change on a directly connected routerEPSS 0.3%CVE-2023-22405MEDIUMJunos OS: QFX5k Series, EX46xx Series: MAC limiting feature stops working after PFE restart or device rebootEPSS 0.3%CVE-2024-21607MEDIUMJunos OS: MX Series and EX9200 Series: If the "tcp-reset" option used in an IPv6 filter, matched packets are accepted instead of rejectedEPSS 0.3%CVE-2017-10613MEDIUMJunos OS: A kernel hang may occur due to a specific loopback filter action commandEPSS 0.3%CVE-2023-28970MEDIUMJunos OS: JRR200: Kernel crash upon receipt of a specific packetEPSS 0.3%CVE-2023-28974HIGHJunos OS: MX Series: In a BBE scenario upon receipt of specific malformed packets from subscribers the process bbe-smgd will crashEPSS 0.3%