- EPSS 3.49%
- Veröffentlicht 17.07.2017 13:18:24
- Zuletzt bearbeitet 20.04.2025 01:37:25
A command injection vulnerability in the IDP feature of Juniper Networks Junos OS on SRX series devices potentially allows a user with login access to the device to execute shell commands and elevate privileges. Affected releases are Juniper Networks...
CVE-2017-2314
- EPSS 0.45%
- Veröffentlicht 17.07.2017 13:18:23
- Zuletzt bearbeitet 20.04.2025 01:37:25
Receipt of a malformed BGP OPEN message may cause the routing protocol daemon (rpd) process to crash and restart. By continuously sending specially crafted BGP OPEN messages, an attacker can repeatedly crash the rpd process causing prolonged denial o...
- EPSS 0.42%
- Veröffentlicht 17.07.2017 13:18:18
- Zuletzt bearbeitet 20.04.2025 01:37:25
A specific device configuration can result in a commit failure condition. When this occurs, a user is logged in without being prompted for a password while trying to login through console, ssh, ftp, telnet or su, etc., This issue relies upon a device...
CVE-2017-10602
- EPSS 0.07%
- Veröffentlicht 17.07.2017 13:18:18
- Zuletzt bearbeitet 20.04.2025 01:37:25
A buffer overflow vulnerability in Junos OS CLI may allow a local authenticated user with read only privileges and access to Junos CLI, to execute code with root privileges. Affected releases are Juniper Networks Junos OS: 14.1X53 versions prior to 1...
CVE-2017-10603
- EPSS 0.09%
- Veröffentlicht 17.07.2017 13:18:18
- Zuletzt bearbeitet 20.04.2025 01:37:25
An XML injection vulnerability in Junos OS CLI can allow a locally authenticated user to elevate privileges and run arbitrary commands as the root user. This issue was found during internal product security testing. Affected releases are Juniper Netw...
CVE-2017-10604
- EPSS 0.34%
- Veröffentlicht 17.07.2017 13:18:18
- Zuletzt bearbeitet 20.04.2025 01:37:25
When the device is configured to perform account lockout with a defined period of time, any unauthenticated user attempting to log in as root with an incorrect password can trigger a lockout of the root account. When an SRX Series device is in cluste...
CVE-2017-10605
- EPSS 0.77%
- Veröffentlicht 17.07.2017 13:18:18
- Zuletzt bearbeitet 20.04.2025 01:37:25
On all vSRX and SRX Series devices, when the DHCP or DHCP relay is configured, specially crafted packet might cause the flowd process to crash, halting or interrupting traffic from flowing through the device(s). Repeated crashes of the flowd process ...
CVE-2017-2300
- EPSS 0.54%
- Veröffentlicht 30.05.2017 14:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
On Juniper Networks SRX Series Services Gateways chassis clusters running Junos OS 12.1X46 prior to 12.1X46-D65, 12.3X48 prior to 12.3X48-D40, 12.3X48 prior to 12.3X48-D60, flowd daemon on the primary node of an SRX Series chassis cluster may crash a...
CVE-2017-2301
- EPSS 1.49%
- Veröffentlicht 30.05.2017 14:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
On Juniper Networks products or platforms running Junos OS 11.4 prior to 11.4R13-S3, 12.1X46 prior to 12.1X46-D60, 12.3 prior to 12.3R12-S2 or 12.3R13, 12.3X48 prior to 12.3X48-D40, 13.2X51 prior to 13.2X51-D40, 13.3 prior to 13.3R10, 14.1 prior to 1...
CVE-2017-2302
- EPSS 0.81%
- Veröffentlicht 30.05.2017 14:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
On Juniper Networks products or platforms running Junos OS 12.1X46 prior to 12.1X46-D55, 12.1X47 prior to 12.1X47-D45, 12.3R13 prior to 12.3R13, 12.3X48 prior to 12.3X48-D35, 13.3 prior to 13.3R10, 14.1 prior to 14.1R8, 14.1X53 prior to 14.1X53-D40, ...