7.8

CVE-2014-3815

Juniper Junos 12.1X46 before 12.1X46-D20 and 12.1X47 before 12.1X47-D10 on SRX Series devices allows remote attackers to cause a denial of service (flowd crash) via a crafted SIP packet.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Juniper ≫ Junos Version 12.1x46
Juniper ≫ Junos Version 12.1x47
Juniper ≫ Srx100 Version -
Juniper ≫ Srx110 Version -
Juniper ≫ Srx1400 Version -
Juniper ≫ Srx210 Version -
Juniper ≫ Srx220 Version -
Juniper ≫ Srx240 Version -
Juniper ≫ Srx3400 Version -
Juniper ≫ Srx3600 Version -
Juniper ≫ Srx550 Version -
Juniper ≫ Srx5600 Version -
Juniper ≫ Srx5800 Version -
Juniper ≫ Srx650 Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.8% 0.756
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.8 10 6.9
AV:N/AC:L/Au:N/C:N/I:N/A:C
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

http://www.securityfocus.com/bid/68551
http://www.securitytracker.com/id/1030557
https://kb.juniper.net/InfoCenter/index?page=content&id=JSA10633
Vendor Advisory