Home/Product/juniper junos os evolved
Product

juniper junos os evolved

239 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-33797
all versions
An Improper Input Validation vulnerability in Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, adjacent a
7.4HIGH
CVE-2026-33793
< 22.4
An Execution with Unnecessary Privileges vulnerability in the User Interface (UI) of Juniper Networks Junos OS and Junos OS Evolv
7.8HIGH
CVE-2026-33791
< 22.4
An OS Command Injection vulnerability in the CLI processing of Juniper Networks Junos OS and Junos OS Evolved allows a local, high
6.7MEDIUM
CVE-2026-33783
< 22.4
A Function Call With Incorrect Argument Type vulnerability in the sensor interface of Juniper Networks Junos OS Evolved on PTX Ser
6.5MEDIUM
CVE-2026-33780
< 22.4
A Missing Release of Memory after Effective Lifetime vulnerability in the Layer 2 Address Learning Daemon (l2ald) of Juniper Netw
6.5MEDIUM
CVE-2026-33776
< 23.2
A Missing Authorization vulnerability in the CLI of Juniper Networks Junos OS and Junos OS Evolved allows a local user with low pr
5.5MEDIUM
CVE-2026-21919
all versions
An Incorrect Synchronization vulnerability in the management daemon (mgd) of Juniper Networks Junos OS and Junos OS Evolved allows
6.5MEDIUM
CVE-2025-59969
< 22.4
A Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in the advanced forwarding toolkit (evo-aft
6.5MEDIUM
CVE-2026-21902
all versions
An Incorrect Permission Assignment for Critical Resource vulnerability in the On-Box Anomaly detection framework of Juniper Networ
9.8CRITICAL
CVE-2026-21921
< 22.4
A Use After Free vulnerability in the chassis daemon (chassisd) of Juniper Networks Junos OS and Junos OS Evolved allows a network
6.5MEDIUM
CVE-2026-21911
< 21.4
An Incorrect Calculation vulnerability in the Layer 2 Control Protocol Daemon (l2cpd) of Juniper Networks Junos OS Evolved all
6.5MEDIUM
CVE-2026-21909
all versions
A Missing Release of Memory after Effective Lifetime vulnerability in the routing protocol daemon (rpd) Juniper Networks Junos OS
6.5MEDIUM
CVE-2026-21908
all versions
A Use After Free vulnerability was identified in the 802.1X authentication daemon (dot1xd) of Juniper Networks Junos OS and Junos
7.1HIGH
CVE-2025-60011
< 22.4
An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Networks Jun
5.8MEDIUM
CVE-2025-60003
< 22.4
A Buffer Over-read vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an
7.5HIGH
CVE-2025-59961
< 22.4
An Incorrect Permission Assignment for Critical Resource vulnerability in the Juniper DHCP daemon (jdhcpd) of Juniper Networks Jun
5.5MEDIUM
CVE-2025-59960
< 21.4
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Juniper DHCP service (jdhcpd) of Juniper Networks Jun
7.4HIGH
CVE-2025-59959
< 22.4
An Untrusted Pointer Dereference vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evol
5.5MEDIUM
CVE-2025-60010
< 22.4
A password aging vulnerability in the RADIUS client of Juniper Networks Junos OS and Junos OS Evolved allows an authenticated, net
5.4MEDIUM
CVE-2025-60006
all versions
Multiple instances of an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerabilit
5.3MEDIUM
CVE-2025-60004
all versions
An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Networks Jun
7.5HIGH
CVE-2025-59967
all versions
A NULL Pointer Dereference vulnerability in the PFE management daemon (evo-pfemand) of Juniper Networks Junos OS Evolved on ACX702
6.5MEDIUM
CVE-2025-59962
< 22.3
An Access of Uninitialized Pointer vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Ev
5.3MEDIUM
CVE-2025-59958
< 22.4
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Ju
6.5MEDIUM
CVE-2025-52961
all versions
An Uncontrolled Resource Consumption vulnerability in the Connectivity Fault Management (CFM) daemon and the Connectivity Fault M
6.5MEDIUM
CVE-2025-52989
< 22.4
An Improper Neutralization of Delimiters vulnerability in the UI of Juniper Networks Junos OS and Junos OS Evolved allows a local,
5.1MEDIUM
CVE-2025-52988
< 22.4
An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in the CLI of Juniper
6.7MEDIUM
CVE-2025-52986
< 22.2
A Missing Release of Memory after Effective Lifetime vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos
5.5MEDIUM
CVE-2025-52985
all versions
A Use of Incorrect Operator vulnerability in the Routing Engine firewall of Juniper Networks Junos OS Evolved allows an unauthent
5.3MEDIUM
CVE-2025-52984
< 22.4
A NULL Pointer Dereference vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved al
5.9MEDIUM
CVE-2025-52964
< 21.4
A Reachable Assertion vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows
6.5MEDIUM
CVE-2025-52958
< 22.2
A Reachable Assertion vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows
5.3MEDIUM
CVE-2025-52955
all versions
An Incorrect Calculation of Buffer Size vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos
6.5MEDIUM
CVE-2025-52954
< 22.2
A Missing Authorization vulnerability in the internal virtual routing and forwarding (VRF) of Juniper Networks Junos OS Evolved a
7.8HIGH
CVE-2025-52953
< 22.2
An Expected Behavior Violation vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolv
6.5MEDIUM
CVE-2025-52949
< 22.2
An Improper Handling of Length Parameter Inconsistency vulnerability in the routing protocol daemon (rpd) of Juniper Networks Juno
6.5MEDIUM
CVE-2025-52946
< 22.4
A Use After Free vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Juniper Networks Junos OS Evo
7.5HIGH
CVE-2025-30655
< 21.2
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Jun
5.5MEDIUM
CVE-2025-30654
< 21.4
An Exposure of Sensitive Information to an Unauthorized Actor vulnerability in the User Interface (UI) of Juniper Networks Junos O
5.5MEDIUM
CVE-2025-30653
< 22.2
An Expired Pointer Dereference vulnerability in Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved al
6.5MEDIUM
CVE-2025-30652
< 21.2
An Improper Handling of Exceptional Conditions vulnerability in routing protocol daemon (rpd) of Juniper Networks Junos OS and Jun
5.5MEDIUM
CVE-2025-30651
< 21.2
A Buffer Access with Incorrect Length Value vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Ju
7.5HIGH
CVE-2025-30648
all versions
An Improper Input Validation vulnerability in the Juniper DHCP Daemon (jdhcpd) of Juniper Networks Junos OS and Junos OS Evolved
7.4HIGH
CVE-2025-30646
< 21.4
A Signed to Unsigned Conversion Error vulnerability in the Layer 2 Control Protocol daemon (l2cpd) of Juniper Networks Junos OS an
6.5MEDIUM
CVE-2025-21597
< 21.2
An Improper Check for Unusual or Exceptional Conditions vulnerability in routing protocol daemon (rpd) of Juniper Networks Junos O
5.3MEDIUM
CVE-2025-21595
< 21.2
A Missing Release of Memory after Effective Lifetime vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Juno
6.5MEDIUM
CVE-2024-39564
< 21.2
This is a similar, but different vulnerability than the issue reported as CVE-2024-39549. A double-free vulnerability in the ro
7.5HIGH
CVE-2025-21598
all versions
An Out-of-bounds Read vulnerability in Juniper Networks Junos OS and Junos OS Evolved's routing protocol daemon (rpd) allows an u
7.5HIGH
CVE-2025-21602
all versions
An Improper Handling of Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and
6.5MEDIUM
CVE-2025-21600
all versions
An Out-of-Bounds Read vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved all
6.5MEDIUM
CVE-2025-21599
all versions
A Missing Release of Memory after Effective Lifetime vulnerability in the Juniper Tunnel Driver (jtd) of Juniper Networks Junos O
7.5HIGH
CVE-2025-21593
< 21.2
An Improper Control of a Resource Through its Lifetime vulnerability in the routing protocol daemon (rpd) of Juniper Networks Juno
6.5MEDIUM
CVE-2024-47509
< 21.4
An Allocation of Resources Without Limits or Throttling vulnerability in the PFE management daemon (evo-pfemand) of Juniper Netwo
6.5MEDIUM
CVE-2024-47508
< 21.2
An Allocation of Resources Without Limits or Throttling vulnerability in the PFE management daemon (evo-pfemand) of Juniper Netwo
6.5MEDIUM
CVE-2024-47507
< 21.4
An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Networks Jun
5.8MEDIUM
CVE-2024-47505
< 21.4
An Allocation of Resources Without Limits or Throttling vulnerability in the PFE management daemon (evo-pfemand) of Juniper Netwo
6.5MEDIUM
CVE-2024-47502
< 21.4
An Allocation of Resources Without Limits or Throttling vulnerability in the kernel of Juniper Networks Junos OS Evolved allows an
7.5HIGH
CVE-2024-47499
< 21.2
An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon (RPD) of Juniper Networks Jun
7.5HIGH
CVE-2024-47498
< 21.4
An Unimplemented or Unsupported Feature in UI vulnerability in the CLI of Juniper Networks Junos OS Evolved on QFX5000 Series allo
6.5MEDIUM
CVE-2024-47495
< 21.2
An Authorization Bypass Through User-Controlled Key vulnerability allows a locally authenticated attacker with shell access to gai
6.7MEDIUM
CVE-2024-47491
< 21.4
An Improper Handling of Exceptional Conditions vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and
5.9MEDIUM
CVE-2024-47490
< 21.4
An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in the Packet Forwarding Engine (PFE) of Jun
8.2HIGH
CVE-2024-47489
< 21.4
An Improper Handling of Exceptional Conditions vulnerability in the Packet Forwarding Engine (pfe) of the Juniper Networks Junos O
5.8MEDIUM
CVE-2024-39544
< 20.4
An Incorrect Default Permissions vulnerability in the command line interface (CLI) of Juniper Networks Junos OS Evolved allows a
5.0MEDIUM
CVE-2024-39534
< 21.4
An Incorrect Comparison vulnerability in the local address verification API of Juniper Networks Junos OS Evolved allows an unauth
5.4MEDIUM
CVE-2024-39526
>= 19.4 and < 21.2
An Improper Handling of Exceptional Conditions vulnerability in packet processing of Juniper Networks Junos OS on MX Series with M
6.5MEDIUM
CVE-2024-39525
< 21.2
An Improper Handling of Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS an
7.5HIGH
CVE-2024-39516
< 21.4
An Out-of-Bounds Read vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved al
7.5HIGH
CVE-2024-39515
< 21.4
An Improper Validation of Consistency within Input vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS
7.5HIGH
CVE-2024-39553
all versions
An Exposure of Resource to Wrong Sphere vulnerability in the sampling service of Juniper Networks Junos OS Evolved allows an unau
6.5MEDIUM
CVE-2024-39552
< 21.2
An Improper Handling of Exceptional Conditions vulnerability in the routing protocol daemon (RPD) of Juniper Networks Junos OS and
7.5HIGH
CVE-2024-39549
<= 21.1
A Missing Release of Memory after Effective Lifetime vulnerability in the routing process daemon (rpd) of Juniper Networks Junos
7.5HIGH
CVE-2024-39548
< 21.2
An Uncontrolled Resource Consumption vulnerability in the aftmand process of Juniper Networks Junos OS Evolved allows an unauthent
7.5HIGH
CVE-2024-39546
all versions
A Missing Authorization vulnerability in the Socket Intercept (SI) command file interface of Juniper Networks Junos OS Evolved all
7.3HIGH
CVE-2024-39543
< 21.2
A Buffer Copy without Checking Size of Input vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and
6.5MEDIUM
CVE-2024-39542
all versions
An Improper Validation of Syntactic Correctness of Input vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks J
7.5HIGH
CVE-2024-39541
all versions
An Improper Handling of Exceptional Conditions vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and
6.5MEDIUM
CVE-2024-39538
< 21.2
A Buffer Copy without Checking Size of Input vulnerability in the PFE management daemon (evo-pfemand) of Juniper Networks Junos OS
6.5MEDIUM
CVE-2024-39537
< 21.4
An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in Juniper Networks Junos OS Evolved on ACX 7
6.5MEDIUM
CVE-2024-39536
< 21.2
A Missing Release of Memory after Effective Lifetime vulnerability in the Periodic Packet Management Daemon (ppmd) of Juniper Netw
5.3MEDIUM
CVE-2024-39535
all versions
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Ju
6.5MEDIUM
CVE-2024-39532
all versions
An Insertion of Sensitive Information into Log File vulnerability in Juniper Networks Junos OS and Junos OS Evolved allows a local
6.3MEDIUM
CVE-2024-39531
< 21.4
An Improper Handling of Values vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved on ACX 700
7.5HIGH
CVE-2024-39528
< 21.2
A Use After Free vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an a
5.7MEDIUM
CVE-2024-39524
< 20.4
An Improper Neutralization of Special Elements vulnerability in Juniper Networks Junos OS Evolved commands allows a local, authent
7.8HIGH
CVE-2024-39523
< 20.4
An Improper Neutralization of Special Elements vulnerability in Juniper Networks Junos OS Evolved commands allows a local, authent
7.8HIGH
CVE-2024-39522
all versions
An Improper Neutralization of Special Elements vulnerability in Juniper Networks Junos OS Evolved commands allows a local, authent
7.8HIGH
CVE-2024-39521
>= 21.1 and < 21.2
An Improper Neutralization of Special Elements vulnerability in Juniper Networks Junos OS Evolved commands allows a local, authent
7.8HIGH
CVE-2024-39520
< 20.4
An Improper Neutralization of Special Elements vulnerability in Juniper Networks Junos OS Evolved commands allows a local, authen
7.8HIGH
CVE-2024-39519
>= 22.2 and < 22.4
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Ju
6.5MEDIUM
CVE-2024-39562
< 21.4
A Missing Release of Resource after Effective Lifetime vulnerability the xinetd process, responsible for spawning SSH daemon (sshd
7.5HIGH
CVE-2024-39560
< 21.4
An Improper Handling of Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and
6.5MEDIUM
CVE-2024-39559
< 21.2
An Improper Check for Unusual or Exceptional Conditions vulnerability in packet processing of Juniper Networks Junos OS Evolved ma
5.9MEDIUM
CVE-2024-39558
< 20.4
An Unchecked Return Value vulnerability in the Routing Protocol Daemon (rpd) on Juniper Networks Junos OS and Juniper Networks Jun
6.5MEDIUM
CVE-2024-39557
< 21.4
An Uncontrolled Resource Consumption vulnerability in the Layer 2 Address Learning Daemon (l2ald) of Juniper Networks Junos OS
6.5MEDIUM
CVE-2024-39556
< 21.4
A Stack-Based Buffer Overflow vulnerability in Juniper Networks Junos OS and Juniper Networks Junos OS Evolved may allow a local,
6.4MEDIUM
CVE-2024-39555
< 21.4
An Improper Handling of Exceptional Conditions vulnerability in the Routing Protocol Daemon (RPD) of Juniper Networks Junos OS and
7.5HIGH
CVE-2024-39554
>= 21.1 and < 21.3
A Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability the Routing Protocol
5.9MEDIUM
CVE-2024-39517
< 21.4
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Layer 2 Address Learning Daemon (l2ald) on Juniper N
6.5MEDIUM
CVE-2024-39514
< 20.4
An Improper Check or Handling of Exceptional Conditions vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Jun
6.5MEDIUM
CVE-2024-39513
< 20.4
An Improper Input Validation vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved allows a loc
5.5MEDIUM
CVE-2024-39512
all versions
An Improper Physical Access Control vulnerability in the console port control of Juniper Networks Junos OS Evolved allows an attac
6.6MEDIUM
CVE-2024-30380
< 21.2
An Improper Handling of Exceptional Conditions vulnerability in Juniper Networks Junos OS and Junos OS Evolved allows an adjacent
6.5MEDIUM
CVE-2024-30403
all versions
A NULL Pointer Dereference vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved allows an unau
6.5MEDIUM
CVE-2024-30402
< 21.4
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Layer 2 Address Learning Daemon (l2ald) of Juniper N
5.9MEDIUM
CVE-2024-30390
< 21.4
An Improper Restriction of Excessive Authentication Attempts vulnerability in Juniper Networks Junos OS Evolved allows an unauthen
5.3MEDIUM
CVE-2024-30386
< 20.4
A Use-After-Free vulnerability in the Layer 2 Address Learning Daemon (l2ald) of Juniper Networks Junos OS and Junos OS Evolved
5.3MEDIUM
CVE-2024-30382
< 21.2
An Improper Handling of Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and
7.5HIGH
CVE-2024-30409
all versions
An Improper Check for Unusual or Exceptional Conditions vulnerability in telemetry processing of Juniper Networks Junos OS and Jun
5.3MEDIUM
CVE-2024-30406
all versions
A Cleartext Storage in a File on Disk vulnerability in Juniper Networks Junos OS Evolved ACX Series devices using the Paragon Act
5.5MEDIUM
CVE-2024-30395
< 21.2
An Improper Validation of Specified Type of Input vulnerability in Routing Protocol Daemon (RPD) of Junos OS and Junos OS Evolved
7.5HIGH
CVE-2024-30394
< 21.4
A Stack-based Buffer Overflow vulnerability in the Routing Protocol Daemon (RPD) component of Junos OS and Junos OS Evolved allow
7.5HIGH
CVE-2024-21618
all versions
An Access of Memory Location After End of Buffer vulnerability in the Layer-2 Control Protocols Daemon (l2cpd) of Juniper Networks
6.5MEDIUM
CVE-2024-21615
< 21.2
An Incorrect Default Permissions vulnerability in Juniper Networks Junos OS and Junos OS Evolved allows a local, low-privileged at
5.0MEDIUM
CVE-2024-21598
all versions
An Improper Validation of Syntactic Correctness of Input vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Ju
7.5HIGH
CVE-2024-21590
<= 21.2
An Improper Input Validation vulnerability in Juniper Tunnel Driver (jtd) and ICMP module of Juniper Networks Junos OS Evolved all
5.3MEDIUM
CVE-2024-21614
all versions
An Improper Check for Unusual or Exceptional Conditions vulnerability in Routing Protocol Daemon (RPD) of Juniper Networks Junos O
7.5HIGH
CVE-2024-21613
all versions
A Missing Release of Memory after Effective Lifetime vulnerability in Routing Protocol Daemon (RPD) of Juniper Networks Junos OS a
6.5MEDIUM
CVE-2024-21612
< 21.2
An Improper Handling of Syntactically Invalid Structure vulnerability in Object Flooding Protocol (OFP) service of Juniper Network
7.5HIGH
CVE-2024-21611
all versions
A Missing Release of Memory after Effective Lifetime vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos
7.5HIGH
CVE-2024-21604
all versions
An Allocation of Resources Without Limits or Throttling vulnerability in the kernel of Juniper Networks Junos OS Evolved allows an
7.5HIGH
CVE-2024-21602
all versions
A NULL Pointer Dereference vulnerability in Juniper Networks Junos OS Evolved on ACX7024, ACX7100-32C and ACX7100-48L allows an un
7.5HIGH
CVE-2024-21596
all versions
A Heap-based Buffer Overflow vulnerability in the Routing Protocol Daemon (RPD) of Juniper Networks Junos OS and Junos OS Evolved
5.3MEDIUM
CVE-2024-21585
all versions
An Improper Handling of Exceptional Conditions vulnerability in BGP session processing of Juniper Networks Junos OS and Junos OS E
5.9MEDIUM
CVE-2023-44204
all versions
An Improper Validation of Syntactic Correctness of Input vulnerability in Routing Protocol Daemon (rpd) Juniper Networks Junos OS
6.5MEDIUM
CVE-2023-44201
< 20.4
An Incorrect Permission Assignment for Critical Resource vulnerability in a specific file of Juniper Networks Junos OS and Junos O
5.0MEDIUM
CVE-2023-44197
< 20.4
An Out-of-Bounds Write vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows
7.5HIGH
CVE-2023-44196
< 20.4
An Improper Check for Unusual or Exceptional Conditions in the Packet Forwarding Engine (pfe) of Juniper Networks Junos OS Evolved
6.5MEDIUM
CVE-2023-44195
all versions
An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in the NetworkStack agent daemon (nsagentd) o
5.4MEDIUM
CVE-2023-44185
< 20.4
An Improper Input Validation vulnerability in the routing protocol daemon (rpd) of Juniper Networks allows an attacker to cause a
7.5HIGH
CVE-2023-44184
< 21.4
An Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in the management daemon (mgd) process of
6.5MEDIUM
CVE-2023-44182
< 21.4
An Unchecked Return Value vulnerability in the user interfaces to the Juniper Networks Junos OS and Junos OS Evolved, the CLI, the
7.3HIGH
CVE-2023-44178
< 20.4
A Stack-based Buffer Overflow vulnerability in the CLI command of Juniper Networks Junos OS allows a low privileged attacker to ex
5.5MEDIUM
CVE-2023-44177
< 20.4
A Stack-based Buffer Overflow vulnerability in the CLI command of Juniper Networks Junos and Junos EVO allows a low privileged att
5.5MEDIUM
CVE-2023-44176
< 20.4
A Stack-based Buffer Overflow vulnerability in the CLI command of Juniper Networks Junos OS allows a low privileged attacker to ex
5.5MEDIUM
CVE-2023-44175
all versions
A Reachable Assertion vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows
6.5MEDIUM
CVE-2023-36839
< 20.4
An Improper Validation of Specified Quantity in Input vulnerability in the Layer-2 control protocols daemon (l2cpd) of Juniper Net
6.5MEDIUM
CVE-2023-44190
< 21.4
An Origin Validation vulnerability in MAC address validation of Juniper Networks Junos OS Evolved on PTX10001, PTX10004, PTX10008,
6.1MEDIUM
CVE-2023-44189
< 21.4
An Origin Validation vulnerability in MAC address validation of Juniper Networks Junos OS Evolved on PTX10003 Series allows a netw
6.1MEDIUM
CVE-2023-44187
< 20.4
An Exposure of Sensitive Information vulnerability in the 'file copy' command of Junos OS Evolved allows a local, authenticated at
5.9MEDIUM
CVE-2023-44186
< 20.4
An Improper Handling of Exceptional Conditions vulnerability in AS PATH processing of Juniper Networks Junos OS and Junos OS Evolv
7.5HIGH
CVE-2023-4481
< 20.4
An Improper Input Validation vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved
7.5HIGH
CVE-2023-36849
all versions
An Improper Check or Handling of Exceptional Conditions vulnerability in the Layer-2 control protocols daemon (l2cpd) of Juniper N
6.5MEDIUM
CVE-2023-36840
< 20.4
A Reachable Assertion vulnerability in Routing Protocol Daemon (RPD) of Juniper Networks Junos OS and Junos OS Evolved allows a lo
5.5MEDIUM
CVE-2023-36836
< 20.4
A Use of an Uninitialized Resource vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Ev
4.7MEDIUM
CVE-2023-36833
all versions
A Use After Free vulnerability in the packet forwarding engine (PFE) of Juniper Networks Junos OS Evolved on PTX10001-36MR, and PT
6.5MEDIUM
CVE-2023-0026
< 20.4
An Improper Input Validation vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved
7.5HIGH
CVE-2023-28983
all versions
An OS Command Injection vulnerability in gRPC Network Operations Interface (gNOI) server module of Juniper Networks Junos OS Evolv
8.8HIGH
CVE-2023-28982
all versions
A Missing Release of Memory after Effective Lifetime vulnerability in the routing protocol daemon of Juniper Networks Junos OS and
7.5HIGH
CVE-2023-28981
all versions
An Improper Input Validation vulnerability in the kernel of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticat
6.5MEDIUM
CVE-2023-28980
all versions
A Use After Free vulnerability in the routing protocol daemon of Juniper Networks Junos OS and Junos OS Evolved allows a locally a
5.5MEDIUM
CVE-2023-28978
< 20.4
An Insecure Default Initialization of Resource vulnerability in Juniper Networks Junos OS Evolved allows an unauthenticated, netwo
5.3MEDIUM
CVE-2023-28973
< 20.4
An Improper Authorization vulnerability in the 'sysmanctl' shell command of Juniper Networks Junos OS Evolved allows a local, auth
7.1HIGH
CVE-2023-28967
all versions
A Use of Uninitialized Resource vulnerability in the Border Gateway Protocol (BGP) software of Juniper Networks Junos OS and Junos
7.5HIGH
CVE-2023-28966
< 20.4
An Incorrect Default Permissions vulnerability in Juniper Networks Junos OS Evolved allows a low-privileged local attacker with sh
7.8HIGH
CVE-2023-28964
< 20.1
An Improper Handling of Length Parameter Inconsistency vulnerability in the routing protocol daemon (rpd) of Juniper Networks Juno
7.5HIGH
CVE-2023-28960
all versions
An Incorrect Permission Assignment for Critical Resource vulnerability in Juniper Networks Junos OS Evolved allows a local, authen
8.2HIGH
CVE-2023-22407
< 19.2
An Incomplete Cleanup vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows
6.5MEDIUM
CVE-2023-22406
< 20.4
A Missing Release of Memory after Effective Lifetime vulnerability in the kernel of Juniper Networks Junos OS and Junos OS Evolved
6.5MEDIUM
CVE-2023-22402
all versions
A Use After Free vulnerability in the kernel of Juniper Networks Junos OS Evolved allows an unauthenticated, network-based attacke
5.9MEDIUM
CVE-2023-22401
all versions
An Improper Validation of Array Index vulnerability in the Advanced Forwarding Toolkit Manager daemon (aftmand) of Juniper Network
7.5HIGH
CVE-2023-22400
all versions
An Uncontrolled Resource Consumption vulnerability in the PFE management daemon (evo-pfemand) of Juniper Networks Junos OS Evolved
7.5HIGH
CVE-2023-22398
all versions
An Access of Uninitialized Pointer vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Ev
5.3MEDIUM
CVE-2023-22397
< 20.4
An Allocation of Resources Without Limits or Throttling weakness in the memory management of the Packet Forwarding Engine (PFE) on
6.1MEDIUM
CVE-2023-22393
all versions
An Improper Check for Unusual or Exceptional Conditions vulnerability in BGP route processing of Juniper Networks Junos OS and Jun
7.5HIGH
CVE-2022-22184
all versions
An Improper Input Validation vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved
7.5HIGH
CVE-2022-22250
< 20.4
An Improper Control of a Resource Through its Lifetime vulnerability in Packet Forwarding Engine (PFE) of Juniper Networks Junos O
6.5MEDIUM
CVE-2022-22248
all versions
An Incorrect Permission Assignment vulnerability in shell processing of Juniper Networks Junos OS Evolved allows a low-privileged
7.3HIGH
CVE-2022-22247
all versions
An Improper Input Validation vulnerability in ingress TCP segment processing of Juniper Networks Junos OS Evolved allows a network
7.5HIGH
CVE-2022-22240
< 20.4
An Allocation of Resources Without Limits or Throttling and a Missing Release of Memory after Effective Lifetime vulnerability in
5.5MEDIUM
CVE-2022-22239
< 20.4
An Execution with Unnecessary Privileges vulnerability in Management Daemon (mgd) of Juniper Networks Junos OS Evolved allows a lo
8.2HIGH
CVE-2022-22238
< 20.2
An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Networks Jun
5.3MEDIUM
CVE-2022-22233
all versions
An Unchecked Return Value to NULL Pointer Dereference vulnerability in Routing Protocol Daemon (rpd) of Juniper Networks Junos OS
5.5MEDIUM
CVE-2022-22230
all versions
An Improper Input Validation vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved
6.5MEDIUM
CVE-2022-22227
all versions
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Ju
5.3MEDIUM
CVE-2022-22225
< 20.4
A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos O
5.9MEDIUM
CVE-2022-22224
< 20.4
An Improper Check or Handling of Exceptional Conditions vulnerability in the processing of a malformed OSPF TLV in Juniper Network
6.5MEDIUM
CVE-2022-22220
< 20.4
A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Routing Protocol Daemon (rpd) of Juniper Networks Junos OS, J
5.9MEDIUM
CVE-2022-22219
all versions
Due to the Improper Handling of an Unexpected Data Type in the processing of EVPN routes on Juniper Networks Junos OS and Junos OS
5.9MEDIUM
CVE-2022-22211
< 20.4
A limitless resource allocation vulnerability in FPC resources of Juniper Networks Junos OS Evolved on PTX Series allows an unpriv
7.5HIGH
CVE-2022-22208
all versions
A Use After Free vulnerability in the Routing Protocol Daemon (rdp) of Juniper Networks Junos OS and Junos OS Evolved allows an un
5.9MEDIUM
CVE-2022-22192
all versions
An Improper Validation of Syntactic Correctness of Input vulnerability in the kernel of Juniper Networks Junos OS Evolved on PTX s
7.5HIGH
CVE-2022-22215
< 20.4
A Missing Release of File Descriptor or Handle after Effective Lifetime vulnerability in plugable authentication module (PAM) of J
6.5MEDIUM
CVE-2022-22214
< 20.4
An Improper Input Validation vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS and Junos OS Evolved
6.5MEDIUM
CVE-2022-22213
all versions
A vulnerability in Handling of Undefined Values in the routing protocol daemon (RPD) process of Juniper Networks Junos OS and Juno
5.9MEDIUM
CVE-2022-22212
all versions
An Allocation of Resources Without Limits or Throttling vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Ju
7.5HIGH
CVE-2022-22197
< 20.1
An Operation on a Resource after Expiration or Release vulnerability in the Routing Protocol Daemon (RPD) of Juniper Networks Juno
7.5HIGH
CVE-2022-22196
< 20.4
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Jun
6.5MEDIUM
CVE-2022-22195
< 20.4
An Improper Update of Reference Count vulnerability in the kernel of Juniper Networks Junos OS Evolved allows an unauthenticated,
7.5HIGH
CVE-2022-22194
< 20.4
An Improper Check for Unusual or Exceptional Conditions vulnerability in the packetIO daemon of Juniper Networks Junos OS Evolved
7.5HIGH
CVE-2022-22193
all versions
An Improper Handling of Unexpected Data Type vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and J
5.5MEDIUM
CVE-2022-22183
all versions
An Improper Access Control vulnerability in Juniper Networks Junos OS Evolved allows a network-based unauthenticated attacker who
7.5HIGH
CVE-2022-22177
all versions
A release of illegal memory vulnerability in the snmpd daemon of Juniper Networks Junos OS, Junos OS Evolved allows an attacker to
5.3MEDIUM
CVE-2022-22172
all versions
A Missing Release of Memory after Effective Lifetime vulnerability in the Layer-2 control protocols daemon (l2cpd) of Juniper Netw
6.5MEDIUM
CVE-2022-22169
< 21.2
An Improper Initialization vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved al
5.9MEDIUM
CVE-2022-22164
all versions
An Improper Initialization vulnerability in Juniper Networks Junos OS Evolved may cause a commit operation for disabling the telne
6.5MEDIUM
CVE-2021-31383
all versions
In Point to MultiPoint (P2MP) scenarios within established sessions between network or adjacent neighbors the improper use of a so
7.5HIGH
CVE-2021-31374
all versions
On Juniper Networks Junos OS and Junos OS Evolved devices processing a specially crafted BGP UPDATE or KEEPALIVE message can lead
7.5HIGH
CVE-2021-31363
all versions
In an MPLS P2MP environment a Loop with Unreachable Exit Condition vulnerability in the routing protocol daemon (RPD) of Juniper N
6.5MEDIUM
CVE-2021-31362
<= 20.3
A Protection Mechanism Failure vulnerability in RPD (routing protocol daemon) of Juniper Networks Junos OS and Junos OS Evolved al
6.5MEDIUM
CVE-2021-31360
<= 20.3
An improper privilege management vulnerability in the Juniper Networks Junos OS and Junos OS Evolved command-line interpreter (CLI
7.1HIGH
CVE-2021-31359
<= 20.3
A local privilege escalation vulnerability in Juniper Networks Junos OS and Junos OS Evolved allows a local, low-privileged user t
7.8HIGH
CVE-2021-31358
<= 20.3
A command injection vulnerability in sftp command processing on Juniper Networks Junos OS Evolved allows an attacker with authenti
7.8HIGH
CVE-2021-31357
<= 20.3
A command injection vulnerability in tcpdump command processing on Juniper Networks Junos OS Evolved allows an attacker with authe
7.8HIGH
CVE-2021-31356
<= 20.3
A command injection vulnerability in command processing on Juniper Networks Junos OS Evolved allows an attacker with authenticated
7.8HIGH
CVE-2021-31354
all versions
An Out Of Bounds (OOB) access vulnerability in the handling of responses by a Juniper Agile License (JAL) Client in Juniper Networ
7.1HIGH
CVE-2021-31353
<= 20.3
An Improper Handling of Exceptional Conditions vulnerability in Juniper Networks Junos OS and Junos OS Evolved allows an attacker
7.5HIGH
CVE-2021-31350
all versions
An Improper Privilege Management vulnerability in the gRPC framework, used by the Juniper Extension Toolkit (JET) API on Juniper N
7.5HIGH
CVE-2021-0298
all versions
A Race Condition in the 'show chassis pic' command in Juniper Networks Junos OS Evolved may allow an attacker to crash the port in
4.7MEDIUM
CVE-2021-0297
all versions
A vulnerability in the processing of TCP MD5 authentication in Juniper Networks Junos OS Evolved may allow a BGP or LDP session co
6.5MEDIUM
CVE-2021-0292
all versions
An Uncontrolled Resource Consumption vulnerability in the ARP daemon (arpd) and Network Discovery Protocol (ndp) process of Junipe
6.5MEDIUM
CVE-2021-0291
all versions
An Exposure of System Data vulnerability in Juniper Networks Junos OS and Junos OS Evolved, where a sensitive system-level resourc
6.5MEDIUM
CVE-2021-0287
all versions
In a Segment Routing ISIS (SR-ISIS)/MPLS environment, on Juniper Networks Junos OS and Junos OS Evolved devices, configured with I
6.5MEDIUM
CVE-2021-0286
all versions
A vulnerability in the handling of exceptional conditions in Juniper Networks Junos OS Evolved (EVO) allows an attacker to send sp
7.5HIGH
CVE-2021-0273
all versions
An always-incorrect control flow implementation in the implicit filter terms of Juniper Networks Junos OS and Junos OS Evolved on
5.3MEDIUM
CVE-2021-0264
all versions
A vulnerability in the processing of traffic matching a firewall filter containing a syslog action in Juniper Networks Junos OS on
5.9MEDIUM
CVE-2021-0259
all versions
Due to a vulnerability in DDoS protection in Juniper Networks Junos OS and Junos OS Evolved on QFX5K Series switches in a VXLAN co
7.4HIGH
CVE-2021-0250
all versions
In segment routing traffic engineering (SRTE) environments where the BGP Monitoring Protocol (BMP) feature is enable, a vulnerabil
7.5HIGH
CVE-2021-0239
all versions
In Juniper Networks Junos OS Evolved, receipt of a stream of specific genuine Layer 2 frames may cause the Advanced Forwarding Too
6.5MEDIUM
CVE-2021-0236
all versions
Due to an improper check for unusual or exceptional conditions in Juniper Networks Junos OS and Junos OS Evolved the Routing Proto
6.5MEDIUM
CVE-2021-0226
all versions
On Juniper Networks Junos OS Evolved devices, receipt of a specific IPv6 packet may cause an established IPv6 BGP session to termi
7.1HIGH
CVE-2021-0225
all versions
An Improper Check for Unusual or Exceptional Conditions in Juniper Networks Junos OS Evolved may cause the stateless firewall filt
5.8MEDIUM
CVE-2021-0211
all versions
An improper check for unusual or exceptional conditions in Juniper Networks Junos OS and Junos OS Evolved Routing Protocol Daemon
10.0CRITICAL
CVE-2021-0209
all versions
In Juniper Networks Junos OS Evolved an attacker sending certain valid BGP update packets may cause Junos OS Evolved to access an
6.5MEDIUM
CVE-2021-0208
all versions
An improper input validation vulnerability in the Routing Protocol Daemon (RPD) service of Juniper Networks Junos OS allows an att
8.8HIGH
CVE-2020-1681
all versions
Receipt of a specifically malformed NDP packet sent from the local area network (LAN) to a device running Juniper Networks Junos O
6.5MEDIUM
CVE-2020-1678
all versions
On Juniper Networks Junos OS and Junos OS Evolved platforms with EVPN configured, receipt of specific BGP packets causes a slow me
6.5MEDIUM
CVE-2020-1666
all versions
The system console configuration option 'log-out-on-disconnect' In Juniper Networks Junos OS Evolved fails to log out an active CL
6.6MEDIUM
CVE-2020-1648
all versions
On Juniper Networks Junos OS and Junos OS Evolved devices, processing a specific BGP packet can lead to a routing process daemon (
7.5HIGH
CVE-2020-1646
all versions
On Juniper Networks Junos OS and Junos OS Evolved devices, processing a specific UPDATE for an EBGP peer can lead to a routing pro
7.5HIGH
CVE-2020-1644
all versions
On Juniper Networks Junos OS and Junos OS Evolved devices, the receipt of a specific BGP UPDATE packet causes an internal counter
7.5HIGH
CVE-2020-1632
all versions
In a certain condition, receipt of a specific BGP UPDATE message might cause Juniper Networks Junos OS and Junos OS Evolved device
8.6HIGH
CVE-2020-1638
all versions
The FPC (Flexible PIC Concentrator) of Juniper Networks Junos OS and Junos OS Evolved may restart after processing a specific IPv4
7.5HIGH
CVE-2020-1626
all versions
A vulnerability in Juniper Networks Junos OS Evolved may allow an attacker to cause a Denial of Service (DoS) by sending a high ra
7.5HIGH
CVE-2020-1624
< 19.1r1
A local, authenticated user with shell can obtain the hashed values of login passwords and shared secrets via raw objmon configura
5.5MEDIUM
CVE-2020-1623
< 19.2r1
A local, authenticated user with shell can view sensitive configuration information via the ev.ops configuration file. This issue
5.5MEDIUM
CVE-2020-1622
< 19.1r1
A local, authenticated user with shell can obtain the hashed values of login passwords and shared secrets via the EvoSharedObjStor
5.5MEDIUM
CVE-2020-1621
< 19.3r1
A local, authenticated user with shell can obtain the hashed values of login passwords via configd traces. This issue affects all
5.5MEDIUM
CVE-2020-1620
< 19.3r1
A local, authenticated user with shell can obtain the hashed values of login passwords via configd streamer log. This issue affect
5.5MEDIUM
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin