6.5

CVE-2020-1604

On EX4300, EX4600, QFX3500, and QFX5100 Series, a vulnerability in the IP firewall filter component may cause the firewall filter evaluation of certain packets to fail. This issue only affects firewall filter evaluation of certain packets destined to the device Routing Engine (RE). This issue does not affect the Layer 2 firewall filter evaluation nor does it affect the Layer 3 firewall filter evaluation destined to connected hosts. This issue may occur when evaluating both IPv4 or IPv6 packets. This issue affects Juniper Networks Junos OS: 14.1X53 versions prior to 14.1X53-D12 on QFX5100 Series and EX4600 Series; 14.1X53 versions prior to 14.1X53-D52 on QFX3500 Series; 14.1X53 versions prior to 14.1X53-D48 on EX4300 Series; 15.1 versions prior to 15.1R7-S3 on EX4300 Series; 16.1 versions prior to 16.1R7 on EX4300 Series; 17.1 versions prior to 17.1R3 on EX4300 Series; 17.2 versions prior to 17.2R3 on EX4300 Series; 17.3 versions prior to 17.3R2-S5, 17.3R3 on EX4300 Series; 17.4 versions prior to 17.4R2 on EX4300 Series; 18.1 versions prior to 18.1R3 on EX4300 Series; 18.2 versions prior to 18.2R2 on EX4300 Series.

Data is provided by the National Vulnerability Database (NVD)
JuniperJunos Version14.1x53 Update-
   JuniperEx4600 Version-
   JuniperQfx5100 Version-
   JuniperQfx5110 Version-
   JuniperQfx5120 Version-
JuniperJunos Version14.1x53 Updated10
   JuniperEx4600 Version-
   JuniperQfx5100 Version-
   JuniperQfx5110 Version-
   JuniperQfx5120 Version-
JuniperJunos Version14.1x53 Update-
   JuniperQfx3500 Version-
JuniperJunos Version14.1x53 Updated10
   JuniperQfx3500 Version-
JuniperJunos Version14.1x53 Updated15
   JuniperQfx3500 Version-
JuniperJunos Version14.1x53 Updated16
   JuniperQfx3500 Version-
JuniperJunos Version14.1x53 Updated25
   JuniperQfx3500 Version-
JuniperJunos Version14.1x53 Updated26
   JuniperQfx3500 Version-
JuniperJunos Version14.1x53 Updated27
   JuniperQfx3500 Version-
JuniperJunos Version14.1x53 Updated30
   JuniperQfx3500 Version-
JuniperJunos Version14.1x53 Updated35
   JuniperQfx3500 Version-
JuniperJunos Version14.1x53 Updated40
   JuniperQfx3500 Version-
JuniperJunos Version14.1x53 Updated45
   JuniperQfx3500 Version-
JuniperJunos Version14.1x53 Updated46
   JuniperQfx3500 Version-
JuniperJunos Version14.1x53 Updated47
   JuniperQfx3500 Version-
JuniperJunos Version14.1x53 Updated48
   JuniperQfx3500 Version-
JuniperJunos Version14.1x53 Updated49
   JuniperQfx3500 Version-
JuniperJunos Version14.1x53 Updated51
   JuniperQfx3500 Version-
JuniperJunos Version14.1x53 Update-
   JuniperEx4300 Version-
JuniperJunos Version14.1x53 Updated10
   JuniperEx4300 Version-
JuniperJunos Version14.1x53 Updated15
   JuniperEx4300 Version-
JuniperJunos Version14.1x53 Updated16
   JuniperEx4300 Version-
JuniperJunos Version14.1x53 Updated25
   JuniperEx4300 Version-
JuniperJunos Version14.1x53 Updated26
   JuniperEx4300 Version-
JuniperJunos Version14.1x53 Updated27
   JuniperEx4300 Version-
JuniperJunos Version14.1x53 Updated30
   JuniperEx4300 Version-
JuniperJunos Version14.1x53 Updated35
   JuniperEx4300 Version-
JuniperJunos Version14.1x53 Updated40
   JuniperEx4300 Version-
JuniperJunos Version14.1x53 Updated45
   JuniperEx4300 Version-
JuniperJunos Version14.1x53 Updated46
   JuniperEx4300 Version-
JuniperJunos Version14.1x53 Updated47
   JuniperEx4300 Version-
JuniperJunos Version14.1x53 Updated48
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updatea1
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updatef1
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updatef2
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updatef2-s1
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updatef2-s2
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updatef2-s3
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updatef2-s4
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updatef3
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updatef4
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updatef5
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updatef6
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updatef6-s3
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updatef7
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updater1
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updater2
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updater3
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updater4
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updater4-s9
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updater5
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updater6
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updater6-s6
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updater7-s1
   JuniperEx4300 Version-
JuniperJunos Version15.1 Updater7-s2
   JuniperEx4300 Version-
JuniperJunos Version16.1 Update-
   JuniperEx4300 Version-
JuniperJunos Version16.1 Updater1
   JuniperEx4300 Version-
JuniperJunos Version16.1 Updater2
   JuniperEx4300 Version-
JuniperJunos Version16.1 Updater3
   JuniperEx4300 Version-
JuniperJunos Version16.1 Updater3-s10
   JuniperEx4300 Version-
JuniperJunos Version16.1 Updater4
   JuniperEx4300 Version-
JuniperJunos Version16.1 Updater5-s4
   JuniperEx4300 Version-
JuniperJunos Version16.1 Updater6-s1
   JuniperEx4300 Version-
JuniperJunos Version17.1 Update-
   JuniperEx4300 Version-
JuniperJunos Version17.1 Updater1
   JuniperEx4300 Version-
JuniperJunos Version17.1 Updater2-s1
   JuniperEx4300 Version-
JuniperJunos Version17.1 Updater2-s10
   JuniperEx4300 Version-
JuniperJunos Version17.1 Updater2-s2
   JuniperEx4300 Version-
JuniperJunos Version17.1 Updater2-s3
   JuniperEx4300 Version-
JuniperJunos Version17.1 Updater2-s4
   JuniperEx4300 Version-
JuniperJunos Version17.1 Updater2-s5
   JuniperEx4300 Version-
JuniperJunos Version17.1 Updater2-s6
   JuniperEx4300 Version-
JuniperJunos Version17.1 Updater2-s7
   JuniperEx4300 Version-
JuniperJunos Version17.2 Update-
   JuniperEx4300 Version-
JuniperJunos Version17.2 Updater1-s2
   JuniperEx4300 Version-
JuniperJunos Version17.2 Updater1-s4
   JuniperEx4300 Version-
JuniperJunos Version17.2 Updater1-s7
   JuniperEx4300 Version-
JuniperJunos Version17.2 Updater1-s8
   JuniperEx4300 Version-
JuniperJunos Version17.2 Updater2-s6
   JuniperEx4300 Version-
JuniperJunos Version17.2 Updater2-s7
   JuniperEx4300 Version-
JuniperJunos Version17.3 Update-
   JuniperEx4300 Version-
JuniperJunos Version17.3 Updater1-s1
   JuniperEx4300 Version-
JuniperJunos Version17.3 Updater2
   JuniperEx4300 Version-
JuniperJunos Version17.3 Updater2-s1
   JuniperEx4300 Version-
JuniperJunos Version17.3 Updater2-s2
   JuniperEx4300 Version-
JuniperJunos Version17.3 Updater2-s4
   JuniperEx4300 Version-
JuniperJunos Version17.4 Update-
   JuniperEx4300 Version-
JuniperJunos Version17.4 Updater1
   JuniperEx4300 Version-
JuniperJunos Version17.4 Updater1-s1
   JuniperEx4300 Version-
JuniperJunos Version17.4 Updater1-s2
   JuniperEx4300 Version-
JuniperJunos Version17.4 Updater1-s4
   JuniperEx4300 Version-
JuniperJunos Version17.4 Updater1-s6
   JuniperEx4300 Version-
JuniperJunos Version17.4 Updater1-s7
   JuniperEx4300 Version-
JuniperJunos Version18.1 Update-
   JuniperEx4300 Version-
JuniperJunos Version18.1 Updater2
   JuniperEx4300 Version-
JuniperJunos Version18.1 Updater2-s1
   JuniperEx4300 Version-
JuniperJunos Version18.1 Updater2-s2
   JuniperEx4300 Version-
JuniperJunos Version18.1 Updater2-s4
   JuniperEx4300 Version-
JuniperJunos Version18.2 Update-
   JuniperEx4300 Version-
JuniperJunos Version18.2 Updater1-s4
   JuniperEx4300 Version-
JuniperJunos Version18.2 Updater1-s5
   JuniperEx4300 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.24% 0.448
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.3 3.9 1.4
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:P/A:N
sirt@juniper.net 6.5 3.9 2.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
CWE-284 Improper Access Control

The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.