Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2677▼ 656 respecto a la semana anterior
Críticas / altas1264▼ 294 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
985 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.5) | 0.23% | — | Juniper Junos | 22/4/2021 | 17/6/2026 | When a MX Series is configured as a Broadband Network Gateway (BNG) based on Layer 2 Tunneling Protocol (L2TP), executing certain CLI command may cause the system to run out of disk space, excessive disk usage may cause other complications. An administrator can use the following CLI command to monitor the available… | |
| Modificada | Media (6.5) | 0.38% | — | Juniper Junos | 22/4/2021 | 17/6/2026 | — | |
| Modificada | Media (6.5) | 0.85% | — | Juniper JunosJuniper Junos OS Evolved | 22/4/2021 | 17/6/2026 | Due to an improper check for unusual or exceptional conditions in Juniper Networks Junos OS and Junos OS Evolved the Routing Protocol Daemon (RPD) service, upon receipt of a specific matching BGP packet meeting a specific term in the flowspec configuration, crashes and restarts causing a Denial of Service (DoS).… | |
| Modificada | Alta (7.3) | 0.24% | — | Juniper Junos | 22/4/2021 | 17/6/2026 | On SRX1500, SRX4100, SRX4200, SRX4600, SRX5000 Series with SPC2/SPC3, vSRX Series devices using tenant services on Juniper Networks Junos OS, due to incorrect permission scheme assigned to tenant system administrators, a tenant system administrator may inadvertently send their network traffic to one or more tenants… | |
| Modificada | Media (5.8) | 0.95% | — | Juniper Junos | 22/4/2021 | 17/6/2026 | — | |
| Modificada | Alta (7.5) | 0.96% | — | Juniper Junos | 22/4/2021 | 17/6/2026 | A vulnerability in Juniper Networks Junos OS ACX500 Series, ACX4000 Series, may allow an attacker to cause a Denial of Service (DoS) by sending a high rate of specific packets to the device, resulting in a Forwarding Engine Board (FFEB) crash. Continued receipt of these packets will sustain the Denial of Service (DoS)… | |
| Modificada | Media (6.5) | 1.2% | — | Juniper Junos | 22/4/2021 | 17/6/2026 | A path traversal vulnerability in the Juniper Networks SRX and vSRX Series may allow an authenticated J-web user to read sensitive system files. This issue affects Juniper Networks Junos OS on SRX and vSRX Series: 19.3 versions prior to 19.3R2-S6, 19.3R3-S1; 19.4 versions prior to 19.4R2-S4, 19.4R3; 20.1 versions… | |
| Modificada | Alta (7.5) | 0.96% | — | Juniper Junos | 22/4/2021 | 17/6/2026 | On Juniper Networks SRX Series devices with link aggregation (lag) configured, executing any operation that fetches Aggregated Ethernet (AE) interface statistics, including but not limited to SNMP GET requests, causes a slow kernel memory leak. If all the available memory is consumed, the traffic will be impacted and… | |
| Modificada | Media (5.3) | 1.2% | — | Juniper Junos | 22/4/2021 | 17/6/2026 | An uncontrolled resource consumption vulnerability in Message Queue Telemetry Transport (MQTT) server of Juniper Networks Junos OS allows an attacker to cause MQTT server to crash and restart leading to a Denial of Service (DoS) by sending a stream of specific packets. A Juniper Extension Toolkit (JET) application… | |
| Modificada | Media (6.5) | 0.40% | — | Juniper Junos | 22/4/2021 | 17/6/2026 | — | |
| Modificada | Alta (7.5) | 1.3% | — | Juniper Junos | 22/4/2021 | 17/6/2026 | — | |
| Modificada | Alta (7.5) | 0.88% | — | Juniper Junos OS Evolved | 22/4/2021 | 17/6/2026 | On Juniper Networks Junos OS Evolved devices, receipt of a specific IPv6 packet may cause an established IPv6 BGP session to terminate, creating a Denial of Service (DoS) condition. Continued receipt and processing of this packet will create a sustained Denial of Service (DoS) condition. This issue does not affect… | |
| Modificada | Media (5.8) | 0.71% | — | Juniper Junos OS Evolved | 22/4/2021 | 17/6/2026 | An Improper Check for Unusual or Exceptional Conditions in Juniper Networks Junos OS Evolved may cause the stateless firewall filter configuration which uses the action 'policer' in certain combinations with other options to not take effect. An administrator can use the following CLI command to see the failures with… | |
| Modificada | Media (6.5) | 0.38% | — | Juniper Junos | 22/4/2021 | 17/6/2026 | A vulnerability in the handling of internal resources necessary to bring up a large number of Layer 2 broadband remote access subscriber (BRAS) nodes in Juniper Networks Junos OS can cause the Access Node Control Protocol daemon (ANCPD) to crash and restart, leading to a Denial of Service (DoS) condition. Continued… | |
| Modificada | Media (6.5) | 0.40% | — | Juniper Junos | 22/4/2021 | 17/6/2026 | A vulnerability in Juniper Networks Junos OS running on the ACX5448 and ACX710 platforms may cause BFD sessions to flap when a high rate of transit ARP packets are received. This, in turn, may impact routing protocols and network stability, leading to a Denial of Service (DoS) condition. When a high rate of transit… | |
| Modificada | Media (6.5) | 0.45% | — | Juniper Junos | 22/4/2021 | 17/6/2026 | A vulnerability in the distributed or centralized periodic packet management daemon (PPMD) of Juniper Networks Junos OS may cause receipt of a malformed packet to crash and restart the PPMD process, leading to network destabilization, service interruption, and a Denial of Service (DoS) condition. Continued receipt and… | |
| Modificada | Alta (7.8) | 0.38% | — | Juniper Junos | 15/1/2021 | 17/6/2026 | A local privilege escalation vulnerability in telnetd.real of Juniper Networks Junos OS may allow a locally authenticated shell user to escalate privileges and execute arbitrary commands as root. telnetd.real is shipped with setuid permissions enabled and is owned by the root user, allowing local users to run… | |
| Modificada | Alta (7.4) | 0.64% | — | Juniper Junos | 15/1/2021 | 17/6/2026 | — | |
| Modificada | Media (6.5) | 0.51% | — | Juniper Junos | 15/1/2021 | 17/6/2026 | In an EVPN/VXLAN scenario, if an IRB interface with a virtual gateway address (VGA) is configured on a PE, a traffic loop may occur upon receipt of specific IP multicast traffic. The traffic loop will cause interface traffic to increase abnormally, ultimately leading to a Denial of Service (DoS) in packet processing.… | |
| Modificada | Media (6.8) | 1.2% | — | Juniper Junos Space | 15/1/2021 | 17/6/2026 | The Junos Space Network Management Platform has been found to store shared secrets in a recoverable format that can be exposed through the UI. An attacker who is able to execute arbitrary code in the victim browser (for example via XSS) or access cached contents may be able to obtain a copy of credentials managed by… | |
| Modificada | Media (6.7) | 0.70% | — | Juniper Junos | 15/1/2021 | 17/6/2026 | A command injection vulnerability in install package validation subsystem of Juniper Networks Junos OS that may allow a locally authenticated attacker with privileges to execute commands with root privilege. To validate a package in Junos before installation, an administrator executes the command 'request system… | |
| Modificada | Alta (7.8) | 0.85% | — | Juniper Junos | 15/1/2021 | 17/6/2026 | A command injection vulnerability in the license-check daemon of Juniper Networks Junos OS that may allow a locally authenticated attacker with low privileges to execute commands with root privilege. license-check is a daemon used to manage licenses in Junos OS. To update licenses, a user executes the command 'request… | |
| Modificada | Alta (7.4) | 0.73% | — | Juniper Junos | 15/1/2021 | 17/6/2026 | A vulnerability in processing of certain DHCP packets from adjacent clients on EX Series and QFX Series switches running Juniper Networks Junos OS with DHCP local/relay server configured may lead to exhaustion of DMA memory causing a Denial of Service (DoS). Over time, exploitation of this vulnerability may cause… | |
| Modificada | Media (6.5) | 0.79% | — | Juniper Junos | 15/1/2021 | 17/6/2026 | On Juniper Networks Junos EX series, QFX Series, MX Series and SRX branch series devices, a memory leak occurs every time the 802.1X authenticator port interface flaps which can lead to other processes, such as the pfex process, responsible for packet forwarding, to crash and restart. An administrator can use the… | |
| Modificada | Crítica (10) | 1.3% | — | Juniper JunosJuniper Junos OS Evolved | 15/1/2021 | 17/6/2026 | An improper check for unusual or exceptional conditions in Juniper Networks Junos OS and Junos OS Evolved Routing Protocol Daemon (RPD) service allows an attacker to send a valid BGP FlowSpec message thereby causing an unexpected change in the route advertisements within the BGP FlowSpec domain leading to disruptions… |