CVE-2018-0045
- EPSS 0.68%
- Published 10.10.2018 18:29:00
- Last modified 21.11.2024 03:37:25
Receipt of a specific Draft-Rosen MVPN control packet may cause the routing protocol daemon (RPD) process to crash and restart or may lead to remote code execution. By continuously sending the same specific Draft-Rosen MVPN control packet, an attacke...
CVE-2018-15504
- EPSS 0.42%
- Published 18.08.2018 03:29:00
- Last modified 21.11.2024 03:50:57
An issue was discovered in Embedthis GoAhead before 4.0.1 and Appweb before 7.0.2. The server mishandles some HTTP request fields associated with time, which results in a NULL pointer dereference, as demonstrated by If-Modified-Since or If-Unmodified...
CVE-2018-15505
- EPSS 0.15%
- Published 18.08.2018 03:29:00
- Last modified 21.11.2024 03:50:57
An issue was discovered in Embedthis GoAhead before 4.0.1 and Appweb before 7.0.2. An HTTP POST request with a specially crafted "Host" header field may cause a NULL pointer dereference and thus cause a denial of service, as demonstrated by the lack ...
CVE-2018-0024
- EPSS 0.06%
- Published 11.07.2018 18:29:00
- Last modified 21.11.2024 03:37:22
An Improper Privilege Management vulnerability in a shell session of Juniper Networks Junos OS allows an authenticated unprivileged attacker to gain full control of the system. Affected releases are Juniper Networks Junos OS: 12.1X46 versions prior t...
CVE-2018-0025
- EPSS 0.23%
- Published 11.07.2018 18:29:00
- Last modified 21.11.2024 03:37:23
When an SRX Series device is configured to use HTTP/HTTPS pass-through authentication services, a client sending authentication credentials in the initial HTTP/HTTPS session is at risk that these credentials may be captured during follow-on HTTP/HTTP...
CVE-2018-0026
- EPSS 0.81%
- Published 11.07.2018 18:29:00
- Last modified 21.11.2024 03:37:23
After Junos OS device reboot or upgrade, the stateless firewall filter configuration may not take effect. This issue can be verified by running the command: user@re0> show interfaces <interface_name> extensive | match filters" CAM destination filters...
CVE-2018-0027
- EPSS 1.03%
- Published 11.07.2018 18:29:00
- Last modified 21.11.2024 03:37:23
Receipt of a crafted or malformed RSVP PATH message may cause the routing protocol daemon (RPD) to hang or crash. When RPD is unavailable, routing updates cannot be processed which can lead to an extended network outage. If RSVP is not enabled on an ...
CVE-2018-0029
- EPSS 0.15%
- Published 11.07.2018 18:29:00
- Last modified 21.11.2024 03:37:23
While experiencing a broadcast storm, placing the fxp0 interface into promiscuous mode via the 'monitor traffic interface fxp0' can cause the system to crash and restart (vmcore). This issue only affects Junos OS 15.1 and later releases, and affects ...
CVE-2018-0030
- EPSS 0.61%
- Published 11.07.2018 18:29:00
- Last modified 21.11.2024 03:37:23
Receipt of a specific MPLS packet may cause MPC7/8/9, PTX-FPC3 (FPC-P1, FPC-P2) line cards or PTX1K to crash and restart. By continuously sending specific MPLS packets, an attacker can repeatedly crash the line cards or PTX1K causing a sustained Deni...
CVE-2018-0031
- EPSS 0.19%
- Published 11.07.2018 18:29:00
- Last modified 21.11.2024 03:37:23
Receipt of specially crafted UDP/IP packets over MPLS may be able to bypass a stateless firewall filter. The crafted UDP packets must be encapsulated and meet a very specific packet format to be classified in a way that bypasses IP firewall filter ru...