Vulnerabilidades em Juniper Networks

893 resultados
Análise Vexday

Com 893 CVEs catalogadas e 7 confirmadas em exploração ativa pelo CISA KEV, a taxa de exploração de dispositivos Juniper Networks está 1,7× acima da média geral do catálogo, o que indica risco operacional elevado para organizações que dependem dessas soluções. A CVE mais crítica em exploração ativa no momento é CVE-2023-36846, com escore EPSS de 0,9421 — valor que sinaliza altíssima probabilidade de exploração em curto prazo e deve concentrar esforços imediatos de remediação. O tipo de falha mais recorrente, CWE-754 (verificação inadequada de condições excepcionais), aponta para uma fragilidade estrutural de tratamento de erros que tende a se manifestar em múltiplos componentes. Com 38 CVEs de severidade crítica, 4 com prova de conceito pública disponível e 27 vulnerabilidades surgidas nos últimos 90 dias, o ritmo de exposição recente exige monitoramento contínuo e priorização ativa de patches.

CVE-2023-22400HIGHJunos OS Evolved: A specific SNMP GET operation and a specific CLI commands cause resources to leak and eventually the evo-pfemand process will crashEPSS 0.6%CVE-2023-22401HIGHJunos OS and Junos OS Evolved: PTX10008, PTX10016: When a specific SNMP MIB is queried the FPC will crashEPSS 0.6%CVE-2022-22236HIGHJunos OS: SRX Series and MX Series: When specific valid SIP packets are received the PFE will crashEPSS 0.6%CVE-2023-22411HIGHJunos OS: SRX Series: The flow processing daemon (flowd) will crash when Unified Policies are used with IPv6 and certain dynamic applications are rejected by the deviceEPSS 0.6%CVE-2022-22232HIGHSRX Series: If Unified Threat Management (UTM) Enhanced Content Filtering (CF) is enabled and specific traffic is processed the PFE will crashEPSS 0.6%CVE-2023-28965MEDIUMJunos OS: QFX10002: Failure of storm control feature may lead to Denial of ServiceEPSS 0.6%CVE-2023-22394HIGHJunos OS: SRX Series and MX Series: Memory leak due to receipt of specially crafted SIP calls EPSS 0.6%CVE-2023-22393HIGHJunos OS and Junos OS Evolved: RPD crash upon receipt of BGP route with invalid next-hop EPSS 0.6%CVE-2022-22211HIGHJunos OS Evolved: PTX Series: Multiple FPCs become unreachable due to continuous polling of specific SNMP OIDEPSS 0.6%CVE-2022-22201HIGHSRX5000 Series with SPC3, SRX4000 Series, and vSRX: When PowerMode IPsec is configured, the PFE will crash upon receipt of a malformed ESP packetEPSS 0.6%CVE-2023-28976HIGHJunos OS: MX Series: If a specific traffic rate goes above the DDoS threshold it will lead to an FPC crashEPSS 0.6%CVE-2023-22391HIGHJunos OS: ACX2K Series: Receipt of a high rate of specific traffic will lead to a Denial of Service (DoS)EPSS 0.6%CVE-2022-22231HIGHSRX Series: If UTM Enhanced Content Filtering and AntiVirus are enabled, and specific traffic is processed the PFE will crashEPSS 0.6%CVE-2022-22228HIGHJunos OS: IPv6 OAM SRv6 network-enabled devices are vulnerable to Denial of Service (DoS) due to RPD memory leak upon receipt of specific a IPv6 packetEPSS 0.6%CVE-2023-28967HIGHJunos OS and Junos OS Evolved: An attacker sending genuine BGP packets causes an RPD crashEPSS 0.6%CVE-2022-22204MEDIUMJunos OS: MX Series and SRX Series: When receiving a specific SIP packets stale call table entries are created which eventually leads to a DoS for all SIP trafficEPSS 0.6%CVE-2022-22213MEDIUMJunos OS and Junos OS Evolved: Denial of Service (DoS) vulnerability in RPD upon receipt of specific BGP updateEPSS 0.6%CVE-2018-0056MEDIUMMX Series: L2ALD daemon may crash if a duplicate MAC is learned by two different interfacesEPSS 0.6%CVE-2021-31354HIGHJunos OS and Junos OS Evolved: A vulnerability in the Juniper Agile License Client may allow an attacker to perform Remote Code Execution (RCE)EPSS 0.6%CVE-2025-52983HIGHJunos OS: After removing ssh public key authentication root can still log inEPSS 0.6%