Latest CVE Feed
-
7.8
HIGHCVE-2022-22221
An Improper Neutralization of Special Elements vulnerability in the download manager of Juniper Networks Junos OS on SRX Series and EX Series allows a locally authenticated attacker with low privileges to take full control over the device. One aspect of t... Read more
- Published: Jul. 20, 2022
- Modified: Nov. 21, 2024
-
5.9
MEDIUMCVE-2022-22220
A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Routing Protocol Daemon (rpd) of Juniper Networks Junos OS, Junos OS Evolved allows a network-based unauthenticated attacker to cause a Denial of Service (DoS). When a BGP flow route wit... Read more
- Published: Oct. 18, 2022
- Modified: Nov. 21, 2024
-
5.9
MEDIUMCVE-2022-22219
Due to the Improper Handling of an Unexpected Data Type in the processing of EVPN routes on Juniper Networks Junos OS and Junos OS Evolved, an attacker in direct control of a BGP client connected to a route reflector, or via a machine in the middle (MITM)... Read more
- Published: Oct. 18, 2022
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2022-22218
On SRX Series devices, an Improper Check for Unusual or Exceptional Conditions when using Certificate Management Protocol Version 2 (CMPv2) auto re-enrollment, allows a network-based, unauthenticated attacker to cause a Denial of Service (DoS) by crashing... Read more
- Published: Oct. 18, 2022
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2022-22217
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows an adjacent unauthenticated attacker to cause a Denial of Service (DoS). The issue is caused by malformed MLD p... Read more
- Published: Jul. 20, 2022
- Modified: Nov. 21, 2024
-
4.3
MEDIUMCVE-2022-22216
An Exposure of Sensitive Information to an Unauthorized Actor vulnerability in the PFE of Juniper Networks Junos OS on PTX Series and QFX10k Series allows an adjacent unauthenticated attacker to gain access to sensitive information. PTX1000 and PTX10000 S... Read more
- Published: Jul. 20, 2022
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2022-22215
A Missing Release of File Descriptor or Handle after Effective Lifetime vulnerability in plugable authentication module (PAM) of Juniper Networks Junos OS and Junos OS Evolved allows a locally authenticated attacker with low privileges to cause a Denial o... Read more
- Published: Jul. 20, 2022
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2022-22214
An Improper Input Validation vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent attacker to cause a PFE crash and thereby a Denial of Service (DoS). An FPC will crash and reboot after r... Read more
- Published: Jul. 20, 2022
- Modified: Nov. 21, 2024
-
5.9
MEDIUMCVE-2022-22213
A vulnerability in Handling of Undefined Values in the routing protocol daemon (RPD) process of Juniper Networks Junos OS and Junos OS Evolved may allow an unauthenticated network-based attacker to crash the RPD process by sending a specific BGP update wh... Read more
- Published: Jul. 20, 2022
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2022-22212
An Allocation of Resources Without Limits or Throttling vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved allows unauthenticated network based attacker to cause a Denial of Service (DoS). On all Junos Evolved platfor... Read more
Affected Products : junos_os_evolved- Published: Jul. 20, 2022
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2022-22211
A limitless resource allocation vulnerability in FPC resources of Juniper Networks Junos OS Evolved on PTX Series allows an unprivileged attacker to cause Denial of Service (DoS). Continuously polling the SNMP jnxCosQstatTable causes the FPC to run out of... Read more
Affected Products : junos_os_evolved ptx1000 ptx1000-72q ptx10000 ptx10001 ptx10001-36mr ptx100016 ptx10002 ptx10002-60c ptx10003 +8 more products- Published: Oct. 18, 2022
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2022-22210
A NULL Pointer Dereference vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on QFX5000 Series and MX Series allows an unauthenticated adjacent attacker to cause a Denial of Service (DoS). On QFX5K Series and MX Series, when... Read more
- Published: Jul. 20, 2022
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2022-22209
A Missing Release of Memory after Effective Lifetime vulnerability in the kernel of Juniper Networks Junos OS allows an unauthenticated network based attacker to cause a Denial of Service (DoS). On all Junos platforms, the Kernel Routing Table (KRT) queue... Read more
Affected Products : junos- Published: Jul. 20, 2022
- Modified: Nov. 21, 2024
-
5.9
MEDIUMCVE-2022-22208
A Use After Free vulnerability in the Routing Protocol Daemon (rdp) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated network-based attacker to cause Denial of Service (DoS). When a BGP session flap happens, a Use After Free of a... Read more
- Published: Oct. 18, 2022
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2022-22207
A Use After Free vulnerability in the Advanced Forwarding Toolkit (AFT) manager process (aftmand) of Juniper Networks Junos OS allows an unauthenticated networked attacker to cause a kernel crash due to intensive polling of Abstracted Fabric (AF) interfac... Read more
- Published: Jul. 20, 2022
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2022-22206
A Buffer Overflow vulnerability in the PFE of Juniper Networks Junos OS on SRX series allows an unauthenticated network based attacker to cause a Denial of Service (DoS). The PFE will crash when specific traffic is scanned by Enhanced Web Filtering safe-s... Read more
- Published: Jul. 20, 2022
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2022-22205
A Missing Release of Memory after Effective Lifetime vulnerability in the Application Quality of Experience (appqoe) subsystem of the PFE of Juniper Networks Junos OS on SRX Series allows an unauthenticated network based attacker to cause a Denial of Serv... Read more
- Published: Jul. 20, 2022
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2022-22204
An Improper Release of Memory Before Removing Last Reference vulnerability in the Session Initiation Protocol (SIP) Application Layer Gateway (ALG) of Juniper Networks Junos OS allows unauthenticated network-based attacker to cause a partial Denial of Ser... Read more
- Published: Jul. 20, 2022
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2022-22203
An Incorrect Comparison vulnerability in PFE of Juniper Networks Junos OS allows an adjacent unauthenticated attacker to cause a Denial of Service (DoS). On QFX5000 Series, and EX4600 and EX4650 platforms, the fxpc process will crash followed by the FPC r... Read more
- Published: Jul. 20, 2022
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2022-22202
An Improper Handling of Exceptional Conditions vulnerability on specific PTX Series devices, including the PTX1000, PTX3000 (NextGen), PTX5000, PTX10002-60C, PTX10008, and PTX10016 Series, in Juniper Networks Junos OS allows an unauthenticated MPLS-based ... Read more
- Published: Jul. 20, 2022
- Modified: Nov. 21, 2024