Juniper

Junos

756 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.39%
  • Veröffentlicht 08.04.2020 20:15:13
  • Zuletzt bearbeitet 21.11.2024 05:10:58

A Use of Hard-coded Credentials vulnerability exists in the NFX250 Series for the vSRX Virtual Network Function (VNF) instance, which allows an attacker to take control of the vSRX VNF instance if they have the ability to access an administrative ser...

  • EPSS 0.47%
  • Veröffentlicht 08.04.2020 20:15:13
  • Zuletzt bearbeitet 21.11.2024 05:10:58

The factory configuration for vMX installations, as shipped, includes default credentials for the root account. Without proper modification of these default credentials by the administrator, an attacker could exploit these credentials and access the ...

  • EPSS 0.66%
  • Veröffentlicht 08.04.2020 20:15:13
  • Zuletzt bearbeitet 21.11.2024 05:11:00

This issue occurs on Juniper Networks Junos OS devices which do not support Advanced Forwarding Interface (AFI) / Advanced Forwarding Toolkit (AFT). Devices using AFI and AFT are not exploitable to this issue. An improper initialization of memory in ...

  • EPSS 0.04%
  • Veröffentlicht 08.04.2020 20:15:13
  • Zuletzt bearbeitet 21.11.2024 05:11:00

On Juniper Networks EX and QFX Series, an authentication bypass vulnerability may allow a user connected to the console port to login as root without any password. This issue might only occur in certain scenarios: • At the first reboot after performi...

  • EPSS 0.04%
  • Veröffentlicht 08.04.2020 20:15:13
  • Zuletzt bearbeitet 21.11.2024 05:11:00

A privilege escalation vulnerability in Juniper Networks QFX10K Series, EX9200 Series, MX Series, and PTX Series with Next-Generation Routing Engine (NG-RE), allows a local authenticated high privileged user to access the underlying WRL host. This is...

Exploit
  • EPSS 0.11%
  • Veröffentlicht 08.04.2020 20:15:13
  • Zuletzt bearbeitet 21.11.2024 05:11:01

The kernel memory usage represented as "temp" via 'show system virtual-memory' may constantly increase when Integrated Routing and Bridging (IRB) is configured with multiple underlay physical interfaces, and one interface flaps. This memory leak can ...

  • EPSS 8.4%
  • Veröffentlicht 06.03.2020 15:15:14
  • Zuletzt bearbeitet 21.01.2026 02:15:47

utility.c in telnetd in netkit telnet through 0.17 allows remote attackers to execute arbitrary code via short writes or urgent data, because of a buffer overflow involving the netclear and nextitem functions.

  • EPSS 0.12%
  • Veröffentlicht 28.02.2020 23:15:11
  • Zuletzt bearbeitet 21.11.2024 02:28:29

On the QFX3500 and QFX3600 platforms, the number of bytes collected from the RANDOM_INTERRUPT entropy source when the device boots up is insufficient, possibly leading to weak or duplicate SSH keys or self-signed SSL/TLS certificates. Entropy increas...

  • EPSS 0.13%
  • Veröffentlicht 28.02.2020 23:15:11
  • Zuletzt bearbeitet 21.11.2024 02:32:52

Background For regular, unencrypted FTP traffic, the FTP ALG can inspect the unencrypted control channel and open related sessions for the FTP data channel. These related sessions (gates) are specific to source and destination IPs and ports of client...

  • EPSS 0.48%
  • Veröffentlicht 11.02.2020 17:15:11
  • Zuletzt bearbeitet 21.11.2024 02:14:24

Multiple vulnerabilities exist in Juniper Junos J-Web error handling that may lead to cross site scripting (XSS) issues or crash the J-Web service (DoS). This affects Juniper Junos OS 12.1X44 before 12.1X44-D45, 12.1X46 before 12.1X46-D30, 12.1X47 be...