Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Juniper Networks — Vulnerabilities & Security Advisories 915

Browse all 915 CVE security advisories affecting Juniper Networks. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Juniper Networks operates as a global provider of networking hardware, software, and services, primarily focusing on enterprise and service provider infrastructure. With 893 recorded Common Vulnerabilities and Exposures, the company’s attack surface reflects the complexity of its extensive product portfolio. Historically, vulnerabilities in its systems have frequently involved remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from input validation errors or improper access controls in management interfaces. Notable incidents include critical flaws in ScreenOS and Junos OS that allowed attackers to bypass authentication or execute arbitrary commands, highlighting risks in legacy and core routing platforms. These issues underscore the necessity for rigorous patch management and secure configuration practices. As a foundational element of global internet infrastructure, the security posture of Juniper Networks directly impacts the stability and integrity of connected networks worldwide, necessitating continuous monitoring and proactive defense strategies.

CVE ID Title CVSS Severity Published
CVE-2022-22164 Junos OS Evolved: Telnet service may be enabled when it is expected to be disabled. — Junos OS Evolved CWE-665 6.5 Medium 2022-01-19
CVE-2022-22163 Junos OS: jdhcpd crashes upon receipt of a specific DHCPv6 packet — Junos OS CWE-20 7.4 High 2022-01-19
CVE-2022-22162 Junos OS: A low privileged user can elevate their privileges to the ones of the highest privileged j-web user logged in — Junos OS CWE-209 7.3 High 2022-01-19
CVE-2022-22161 Junos OS: MX104 might become unresponsive if the out-of-band management port receives a flood of traffic — Junos OS CWE-400 7.5 High 2022-01-19
CVE-2022-22160 Junos OS: MX Series: The bbe-smgd process crashes if an unsupported configuration exists and a PPPoE client sends a specific message — Junos OS CWE-391 6.5 Medium 2022-01-19
CVE-2022-22159 Junos OS: An attacker sending crafted packets can cause a traffic and CPU Denial of Service (DoS). — Junos OS 7.5 High 2022-01-19
CVE-2022-22157 Junos OS: SRX Series: Traffic classification vulnerability when 'no-syn-check' is enabled — Junos OS CWE-863 7.2 High 2022-01-19
CVE-2022-22156 Junos OS: Certificate validation is skipped when fetching system scripts from a HTTPS URL — Junos OS CWE-358 6.5 Medium 2022-01-19
CVE-2022-22155 Junos OS: ACX5448: FPC memory leak due to IPv6 neighbor flaps — Junos OS CWE-400 6.5 Medium 2022-01-19
CVE-2022-22154 Junos Fusion: A Satellite Device can be controlled by rewiring it to a foreign AD causing a DoS — Junos OS CWE-642 6.8 Medium 2022-01-19
CVE-2022-22153 SRX Series and MX Series with SPC3: A high percentage of fragments might lead to high latency or packet drops — Junos OS CWE-407 7.5 High 2022-01-19
CVE-2022-22152 Contrail Service Orchestration: Tenants able to see other tenants policies via REST API interface — Contrail Service Orchestration CWE-693 7.7 High 2022-01-19
CVE-2021-31386 Junos OS: When using J-Web with HTTP an attacker may retrieve encryption keys via Person-in-the-Middle attacks. — Junos OS CWE-311 5.3 Medium 2021-10-19
CVE-2021-31385 Junos OS: J-Web: A path traversal vulnerability allows an authenticated attacker to elevate their privileges to root — Junos OS CWE-22 8.8 High 2021-10-19
CVE-2021-31384 Junos OS: SRX Series: Under a specific device configuration an attacker can access the devices J-Web management services from any interface, regardless of security settings protecting the service — Junos OS CWE-285 7.2 High 2021-10-19
CVE-2021-31383 Junos OS and Junos OS Evolved: In Point to MultiPoint (P2MP) scenarios receipt of various crafted packets causes RPD to core. — Junos OS 7.5 High 2021-10-19
CVE-2021-31382 Junos OS: PTX1000 System, PTX10002-60C System: After upgrading, configured firewall filters may be applied on incorrect interfaces — Junos OS CWE-362 6.5 Medium 2021-10-19
CVE-2021-31381 SRC Series: A remote attacker sending a specially crafted query may cause the web server to delete files — SRC Series CWE-16 6.5 Medium 2021-10-19
CVE-2021-31380 SRC Series: A remote attacker sending a specially crafted query may cause the web server to disclose sensitive information — SRC Series CWE-16 5.3 Medium 2021-10-19
CVE-2021-31379 Junos OS: MX Series: MPC 7/8/9/10/11 cards with MAP-E: PFE halts when an attacker sends malformed IPv4 or IPv6 traffic inside the MAP-E tunnel. — Junos OS CWE-696 7.5 High 2021-10-19
CVE-2021-31378 Junos OS: An attacker sending spoofed RADIUS messages to a Junos OS device configured for broadband services may cause broadband subscribers to remain stuck in a "Terminating" state. — Junos OS CWE-772 6.8 Medium 2021-10-19
CVE-2021-31377 Junos OS: A local authenticated attacker can cause RPD to core — Junos OS CWE-732 5.5 Medium 2021-10-19
CVE-2021-31376 Junos OS: ACX Series: Packet Forwarding Engine manager (FXPC) process crashes when processing DHCPv6 packets — Junos OS CWE-20 7.5 High 2021-10-19
CVE-2021-31375 Junos OS: Receipt of a specific BGP update may cause RPKI policy-checks to be bypassed — Junos OS CWE-358 7.2 High 2021-10-19
CVE-2021-31374 Junos OS and Junos OS Evolved: RPD crash while processing a specially crafted BGP UPDATE or KEEPALIVE message. — Junos OS CWE-787 7.5 High 2021-10-19
CVE-2021-31373 Junos OS: SRX Series: Persistent XSS vulnerability in J-Web — Junos OS CWE-20 8.0 High 2021-10-19
CVE-2021-31372 Junos OS: J-Web allows a locally authenticated attacker to escalate their privileges to root. — Junos OS CWE-20 8.8 High 2021-10-19
CVE-2021-31371 Junos OS: QFX5000 Series: Traffic from the network internal to the device (128.0.0.0) may be forwarded to egress interfaces. — Junos OS CWE-200 5.3 Medium 2021-10-19
CVE-2021-31370 Junos OS: QFX5000 Series and EX4600 Series: Control traffic might be dropped if a high rate of specific multicast traffic is received — Junos OS CWE-184 6.5 Medium 2021-10-19
CVE-2021-31369 Junos OS: MX Series: Traffic drops will be observed if MS-MPC/MS-PIC resources are consumed by certain traffic causing a partial DoS — Junos OS CWE-770 5.3 Medium 2021-10-19

This page lists every published CVE security advisory associated with Juniper Networks. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.