Juniper MX Series是美国瞻博网络(Juniper Networks)公司的一款MX系列的路由器产品。Junos OS是使用在其中的一套操作系统。 Juniper MX Series上的Junos OS中的Broadband Edge订阅用户管理守护进程(bbe-smgd)存在安全漏洞。攻击者可利用该漏洞造成设备拒绝服务(bbe-smgd服务崩溃)。以下版本受到影响:Junos OS 16.1R7-S1之前的16.1版本,16.2R2-S7之前的16.2版本,17.1R2-S10和17.1R
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Juniper Networks | Junos OS | 16.1 ~ 16.1R7-S1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2019-0016 | Junos Space: Authenticated user able to delete devices without delete device privileges | |
| CVE-2019-0030 | Juniper ATP: Password hashing uses DES and a hardcoded salt | |
| CVE-2019-0029 | Juniper ATP: Splunk credentials are in logged in clear text | |
| CVE-2019-0027 | Juniper ATP: Persistent Cross-Site Scripting vulnerability in Snort Rules configuration | |
| CVE-2019-0026 | Juniper ATP: Persistent Cross-Site Scripting vulnerability in Zone configuration | |
| CVE-2019-0025 | Juniper ATP: Persistent Cross-Site Scripting vulnerability in RADIUS configuration menu | |
| CVE-2019-0024 | Juniper ATP: Persistent Cross-Site Scripting vulnerability in the Email Collectors menu | |
| CVE-2019-0023 | Juniper ATP: Persistent Cross-Site Scripting vulnerability in the Golden VM menu | |
| CVE-2019-0022 | Juniper ATP: Two hard coded credentials sharing the same password give an attacker the abi | |
| CVE-2019-0021 | Juniper ATP: secret CLI inputs are logged to /var/log/syslog in clear text | |
| CVE-2019-0020 | Juniper ATP: Hard coded credentials used in Web Collector | |
| CVE-2019-0018 | Juniper ATP: Persistent Cross-Site Scripting (XSS) vulnerability in file upload menu | |
| CVE-2019-0017 | Junos Space: Unrestricted file upload vulnerability | |
| CVE-2019-0002 | Junos OS: EX2300 and EX3400 series: Certain stateless firewall filter rules might not take | |
| CVE-2019-0015 | Junos OS: SRX Series: Deleted dynamic VPN users are allowed to establish VPN connections u | |
| CVE-2019-0014 | Junos OS: QFX and PTX Series: FPC process crashes after J-Flow processes a malformed packe | |
| CVE-2019-0013 | Junos OS: RPD crash upon receipt of malformed PIM packet | |
| CVE-2019-0012 | Junos OS: rpd crash on VPLS PE upon receipt of specific BGP message | |
| CVE-2019-0011 | Junos OS: Kernel crash after processing specific incoming packet to the out of band manage | |
| CVE-2019-0010 | Junos OS: SRX Series: Crafted HTTP traffic may cause UTM to consume all mbufs, leading to |
Showing top 20 of 26 CVEs. View all on vendor page → →
No comments yet