Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1325 CNY

100%

Junos OS — Vulnerabilities & Security Advisories 660

All 660 CVE vulnerabilities found in Junos OS, with AI-generated Chinese analysis, references, and POCs.

This page documents known Common Weakness Enumerations associated with Juniper Networks Junos OS. It aggregates data regarding software vulnerabilities, configuration errors, and security bypass issues affecting this specific network operating system. The collection includes vulnerabilities identified through official vendor advisories, independent security research, and public database entries. This resource covers a broad time range, capturing historical weaknesses from early releases to recent updates, ensuring a comprehensive view of the product’s security evolution. Visitors can track Juniper Networks' advisory patterns to understand how different weakness classes are addressed over time. Users can also examine the detailed history of specific vulnerabilities within Junos OS to assess impact and remediation strategies. This information is intended for security professionals, system administrators, and researchers who need to evaluate the risk posture of Juniper infrastructure. The content is structured to facilitate easy lookup of vulnerability details without overwhelming the reader with unnecessary technical noise. By consolidating these data points, the page serves as a central reference for understanding the security landscape of Junos OS. It avoids promotional language to maintain an objective and technical focus, ensuring that the information remains useful for decision-making and compliance purposes. All entries are sourced from verified disclosures to ensure accuracy and reliability.

Vendor: Juniper Networks

CVE IDTitleCVSSSeverityPublished
CVE-2021-31374 Junos OS and Junos OS Evolved: RPD crash while processing a specially crafted BGP UPDATE or KEEPALIVE message. CWE-787 7.5 High2021-10-19
CVE-2021-31373 Junos OS: SRX Series: Persistent XSS vulnerability in J-Web CWE-20 8.0 High2021-10-19
CVE-2021-31372 Junos OS: J-Web allows a locally authenticated attacker to escalate their privileges to root. CWE-20 8.8 High2021-10-19
CVE-2021-31371 Junos OS: QFX5000 Series: Traffic from the network internal to the device (128.0.0.0) may be forwarded to egress interfaces. CWE-200 5.3 Medium2021-10-19
CVE-2021-31370 Junos OS: QFX5000 Series and EX4600 Series: Control traffic might be dropped if a high rate of specific multicast traffic is received CWE-184 6.5 Medium2021-10-19
CVE-2021-31369 Junos OS: MX Series: Traffic drops will be observed if MS-MPC/MS-PIC resources are consumed by certain traffic causing a partial DoS CWE-770 5.3 Medium2021-10-19
CVE-2021-31368 Junos OS: EX2300 Series, EX3400 Series, and ACX710 might become unresponsive if the out-of-band management port receives a flood of traffic CWE-400 7.5 High2021-10-19
CVE-2021-31367 Junos OS: PTX Series: An FPC heap memory leak will be triggered by certain Flowspec route operations which can lead to an FPC crash CWE-401 6.5 Medium2021-10-19
CVE-2021-31366 Junos OS: MX Series: In subscriber management / BBE configuration authd can crash if a subscriber with a specific username tries to login leading to a DoS CWE-252 6.5 Medium2021-10-19
CVE-2021-31365 Junos OS: EX2300, EX3400 and EX4300 Series: An Aggregated Ethernet (AE) interface will go down due to a stream of specific layer 2 frames CWE-400 6.5 Medium2021-10-19
CVE-2021-31364 Junos OS: SRX Series: The flowd process will crash if log session-close is configured and specific traffic is received CWE-754 5.9 Medium2021-10-19
CVE-2021-31363 Junos OS and Junos OS Evolved: Receipt of a specific LDP message will cause a Denial of Service CWE-835 6.5 Medium2021-10-19
CVE-2021-31362 Junos OS and Junos OS Evolved: An IS-IS adjacency might be taken down if a bad hello PDU is received for an existing adjacency causing a DoS CWE-693 6.5 Medium2021-10-19
CVE-2021-31361 Junos OS: QFX Series and PTX Series: FPC resource usage increases when certain packets are processed which are being VXLAN encapsulated CWE-754 5.3 Medium2021-10-19
CVE-2021-31360 Junos OS and Junos OS Evolved: Denial of Service vulnerability in local file processing CWE-269 7.1 High2021-10-19
CVE-2021-31359 Junos OS and Junos OS Evolved: Local Privilege Escalation vulnerability CWE-269 7.8 High2021-10-19
CVE-2021-31355 Junos OS: Stored Cross-Site Scripting (XSS) vulnerability in captive portal CWE-79 8.0 High2021-10-19
CVE-2021-31354 Junos OS and Junos OS Evolved: A vulnerability in the Juniper Agile License Client may allow an attacker to perform Remote Code Execution (RCE) CWE-125 7.1 High2021-10-19
CVE-2021-31353 Junos OS and Junos OS Evolved: RPD core upon receipt of specific BGP update CWE-755 7.5 High2021-10-19
CVE-2021-31351 Junos OS: MX Series: Receipt of specific packet on MS-MPC/MS-MIC causes line card reset CWE-754 7.5 High2021-10-19
CVE-2021-31350 Junos OS and Junos OS Evolved: Privilege escalation vulnerability in Juniper Extension Toolkit (JET) CWE-269 7.5 High2021-10-19
CVE-2021-0299 Junos OS: Kernel crash (vmcore) upon receipt of a malformed IPv6 packet CWE-755 7.5 High2021-10-19
CVE-2021-0284 Junos OS: Upon receipt of specific sequences of genuine packets destined to the device the kernel will crash and restart (vmcore) CWE-120 7.5 High2021-08-17
CVE-2021-0295 Junos OS: QFX10K Series: Denial of Service (DoS) upon receipt of DVMRP packets received on multi-homing ESI in VXLAN. CWE-697 6.1 Medium2021-07-15
CVE-2021-0294 Junos OS: QFX5000 Series and EX4600 Series: Enhanced storm control might not work leading to partial Denial of Service CWE-474 5.3 Medium2021-07-15
CVE-2021-0293 Junos OS: Out-of-memory condition and crashes can occur after executing a certain CLI command repeatedly CWE-401 5.5 Medium2021-07-15
CVE-2021-0291 Junos OS and Junos OS Evolved: A vulnerability allows a network based unauthenticated attacker which sends a high rate of specific traffic to cause a partial Denial of Service CWE-497 6.5 Medium2021-07-15
CVE-2021-0290 Junos OS: MX Series, EX9200 Series, SRX4600: Ethernet interface vulnerable to specially crafted frames CWE-755 6.5 Medium2021-07-15
CVE-2021-0289 Junos OS: User-defined ARP Policer isn't applied on Aggregated Ethernet (AE) interface until firewall process is restarted CWE-367 6.5 Medium2021-07-15
CVE-2021-0288 Junos OS: MX Series, EX9200 Series: FPC may crash upon receipt of specific MPLS packet affecting Trio-based MPCs CWE-754 6.5 Medium2021-07-15

All 660 known CVE vulnerabilities affecting Junos OS with full Chinese analysis, references, and POCs where available.