Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1110 CNY

100%

Junos OS — Vulnerabilities & Security Advisories 660

All 660 CVE vulnerabilities found in Junos OS, with AI-generated Chinese analysis, references, and POCs.

This page details the vulnerability aggregation for Juniper Networks’ Junos OS, focusing on Common Weakness Enumerations (CWE) associated with this specific network operating system. It serves as a centralized resource for security professionals to monitor the stability and security posture of Juniper’s flagship software suite used in routers, switches, and other enterprise infrastructure devices. The content on this page compiles historical and recent vulnerability data affecting Junos OS, encompassing a broad time range from early releases to the most current updates. The collection includes weaknesses related to memory corruption, privilege escalation, input validation failures, and security configuration bypasses. By aggregating these findings, the page aims to provide a comprehensive view of the evolving threat landscape specific to Juniper’s software environment, allowing users to see trends in how different types of weaknesses have been identified and remediated over time. Here, you can track a vendor's advisories by navigating through release notes and security bulletins linked to specific versions. You can also understand a weakness class by examining how specific CWEs manifest within the context of network device firmware and software. Additionally, the page allows you to look up a product's vulnerability history, providing insights into the frequency and severity of past security incidents. This structured approach helps administrators prioritize patching efforts and assess the risk profile of their deployed Juniper equipment without needing to sift through disjointed sources. The focus remains strictly on factual reporting of vulnerabilities to support informed decision-making regarding network security maintenance and compliance.

Vendor: Juniper Networks

CVE IDTitleCVSSSeverityPublished
CVE-2021-0218 Junos OS: Command injection vulnerability in license-check daemon CWE-78 7.8 High2021-01-15
CVE-2021-0215 Junos OS: EX Series, QFX Series, SRX Branch Series, MX Series: Memory leak in packet forwarding engine due to 802.1X authenticator port interface flaps CWE-400 6.5 Medium2021-01-15
CVE-2021-0217 Junos OS: EX Series and QFX Series: Memory leak issue processing specific DHCP packets CWE-119 7.4 High2021-01-15
CVE-2021-0211 Junos OS and Junos OS Evolved: Upon receipt of a specific BGP FlowSpec message network traffic may be disrupted. 10.0 Critical2021-01-15
CVE-2021-0210 Junos OS: Privilege escalation in J-Web due to arbitrary command and code execution via information disclosure from another users active session 6.8 Medium2021-01-15
CVE-2021-0207 NFX250, NFX350, QFX5K Series, EX2300 Series, EX3400 Series, EX4300 Multigigabit, EX4600 Series: Certain genuine traffic received by the Junos OS device will be discarded instead of forwarded. CWE-436 7.5 High2021-01-15
CVE-2021-0208 Junos OS and Junos OS Evolved: In bidirectional LSP configurations, on MPLS egress router RPD may core upon receipt of specific malformed RSVP packet. CWE-20 8.8 High2021-01-15
CVE-2021-0205 Junos OS: MX Series: Dynamic filter fails to match IPv6 prefix CWE-284 5.8 Medium2021-01-15
CVE-2021-0206 Junos OS: NFX Series, SRX Series: PFE may crash upon receipt of specific packet when SSL Proxy is configured. CWE-476 7.5 High2021-01-15
CVE-2021-0204 Junos OS: dexp Local Privilege Escalation vulnerabilities in SUID binaries CWE-250 7.8 High2021-01-15
CVE-2021-0202 Junos OS: MX Series, EX9200 Series: Trio-based MPC memory leak when Integrated Routing and Bridging (IRB) interface is mapped to a VPLS instance or a Bridge-Domain CWE-400 7.5 High2021-01-15
CVE-2021-0203 Junos OS: EX and QFX5K Series: Storm Control does not work as expected when Redundant Trunk Group is configured CWE-794 8.6 High2021-01-15
CVE-2020-1689 Junos OS: EX4300-MP/EX4600/QFX5K Series: High CPU load due to receipt of specific layer 2 frames when deployed in a Virtual Chassis configuration CWE-400 6.5 Medium2020-10-16
CVE-2020-1687 Junos OS: EX4300-MP/EX4600/QFX5K Series: High CPU load due to receipt of specific layer 2 frames in EVPN-VXLAN deployment. CWE-400 6.5 Medium2020-10-16
CVE-2020-1688 Junos OS: SRX and NFX Series: Insufficient Web API private key protection CWE-359 6.5 Medium2020-10-16
CVE-2020-1685 Junos OS: EX4600, QFX5K Series: Stateless firewall filter matching 'user-vlan-id' will cause incomplete discard action CWE-203 5.8 Medium2020-10-16
CVE-2020-1686 Junos OS: Kernel crash (vmcore) upon receipt of a malformed IPv6 packet. CWE-415 7.5 High2020-10-16
CVE-2020-1683 Junos OS: Memory leak leads to kernel crash (vmcore) due to SNMP polling CWE-401 7.5 High2020-10-16
CVE-2020-1684 Junos OS: SRX Series: High CPU load due to processing for HTTP traffic when Application Identification is enabled. CWE-400 7.5 High2020-10-16
CVE-2020-1680 Junos OS: MX Series: MS-MPC/MIC might crash when processing malformed IPv6 packet in NAT64 configuration. CWE-131 5.3 Medium2020-10-16
CVE-2020-1682 Junos OS: SRX1500, vSRX, SRX4K, NFX150, NFX250: Denial of service vulnerability executing local CLI command CWE-20 5.5 Medium2020-10-16
CVE-2020-1678 Junos OS and Junos OS Evolved: RPD can crash due to a slow memory leak. CWE-400 6.5 Medium2020-10-16
CVE-2020-1679 Junos OS: PTX/QFX Series: Kernel Routing Table (KRT) queue stuck after packet sampling a malformed packet when the tunnel-observation mpls-over-udp configuration is enabled. CWE-20 7.5 High2020-10-16
CVE-2020-1672 Junos OS: jdhcpd process crash when processing a specific DHCPDv6 packet in DHCPv6 relay configuration. 7.5 High2020-10-16
CVE-2020-1673 Junos OS: Reflected Cross-site Scripting vulnerability in J-Web and web based (HTTP/HTTPS) services CWE-79 8.8 High2020-10-16
CVE-2020-1669 Junos OS: NFX350: Password hashes stored in world-readable format CWE-256 6.3 Medium2020-10-16
CVE-2020-1670 Junos OS: EX4300 Series: High CPU load due to receipt of specific IPv4 packets CWE-400 6.5 Medium2020-10-16
CVE-2020-1671 Junos OS: Receipt of malformed DHCPv6 packets causes jdhcpd to crash. CWE-119 7.5 High2020-10-16
CVE-2020-1667 Junos OS: MX Series: Services card might restart due to a race condition when DNS filtering is enabled. CWE-362 8.3 High2020-10-16
CVE-2020-1668 Junos OS: EX2300 Series: High CPU load due to receipt of specific multicast packets on layer 2 interface CWE-400 6.5 Medium2020-10-16

All 660 known CVE vulnerabilities affecting Junos OS with full Chinese analysis, references, and POCs where available.