Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
357 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 0.59% | — | Juniper JunosJuniper Junos OS Evolved | 12/1/2024 | 17/6/2026 | A Missing Release of Memory after Effective Lifetime vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS). In a Juniper Flow Monitoring (jflow) scenario route churn that causes BGP next… | |
| Modificada | Alta (7.5) | 0.53% | — | Juniper Junos OS Evolved | 12/1/2024 | 17/6/2026 | An Allocation of Resources Without Limits or Throttling vulnerability in the kernel of Juniper Networks Junos OS Evolved allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS). If a high rate of specific valid packets are processed by the routing engine (RE) this will lead to a loss of… | |
| Modificada | Alta (7.5) | 0.53% | — | Juniper Junos OS Evolved | 12/1/2024 | 17/6/2026 | A NULL Pointer Dereference vulnerability in Juniper Networks Junos OS Evolved on ACX7024, ACX7100-32C and ACX7100-48L allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS). If a specific IPv4 UDP packet is received and sent to the Routing Engine (RE) packetio crashes and restarts which… | |
| Modificada | Media (5.3) | 0.54% | — | Juniper JunosJuniper Junos OS Evolved | 12/1/2024 | 17/6/2026 | A Heap-based Buffer Overflow vulnerability in the Routing Protocol Daemon (RPD) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, network based attacker to cause a Denial of Service (DoS). If an attacker sends a specific BGP UPDATE message to the device, this will cause a memory overwrite… | |
| Modificada | Media (5.9) | 0.63% | — | Juniper JunosJuniper Junos OS Evolved | 12/1/2024 | 17/6/2026 | An Improper Handling of Exceptional Conditions vulnerability in BGP session processing of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated network-based attacker, using specific timing outside the attacker's control, to flap BGP sessions and cause the routing protocol daemon (rpd) process to… | |
| Modificada | Alta (8.8) | 0.97% | — | Ericsson Evolved Packet Gateway | 5/12/2023 | 17/6/2026 | An issue was discovered in Ericsson Evolved Packet Gateway (EPG) versions 3.x before 3.25 and 2.x before 2.16, allows authenticated users to bypass system CLI and execute commands they are authorized to execute directly in the UNIX shell. | |
| Analizada | Media (6.5) | 0.27% | — | Juniper JunosJuniper Junos OS Evolved | 13/10/2023 | 17/6/2026 | An Improper Validation of Syntactic Correctness of Input vulnerability in Routing Protocol Daemon (rpd) Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, network based attacker to cause a Denial of Service (DoS). When a malformed BGP UPDATE packet is received over an established BGP session,… | |
| Modificada | Media (5.5) | 0.14% | — | Juniper JunosJuniper Junos OS Evolved | 13/10/2023 | 17/6/2026 | An Incorrect Permission Assignment for Critical Resource vulnerability in a specific file of Juniper Networks Junos OS and Junos OS Evolved allows a local authenticated attacker to read configuration changes without having the permissions. When a user with the respective permissions commits a configuration change, a… | |
| Modificada | Alta (7.5) | 0.52% | — | Juniper JunosJuniper Junos OS Evolved | 13/10/2023 | 17/6/2026 | An Out-of-Bounds Write vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS). On all Junos OS and Junos OS Evolved devices an rpd crash and restart can occur while processing BGP route… | |
| Modificada | Media (6.5) | 0.24% | — | Juniper Junos OS Evolved | 13/10/2023 | 17/6/2026 | An Improper Check for Unusual or Exceptional Conditions in the Packet Forwarding Engine (pfe) of Juniper Networks Junos OS Evolved on PTX10003 Series allows an unauthenticated adjacent attacker to cause an impact to the integrity of the system. When specific transit MPLS packets are received by the PFE, these packets… | |
| Modificada | Media (5.3) | 0.40% | — | Juniper Junos OS Evolved | 13/10/2023 | 17/6/2026 | An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in the NetworkStack agent daemon (nsagentd) of Juniper Networks Junos OS Evolved allows an unauthenticated network based attacker to cause limited impact to the availability of the system. If specific packets reach the Routing-Engine… | |
| Modificada | Alta (7.5) | 0.52% | — | Juniper JunosJuniper Junos OS Evolved | 13/10/2023 | 17/6/2026 | An Improper Input Validation vulnerability in the routing protocol daemon (rpd) of Juniper Networks allows an attacker to cause a Denial of Service (DoS )to the device upon receiving and processing a specific malformed ISO VPN BGP UPDATE packet. Continued receipt of this packet will cause a sustained Denial of Service… | |
| Analizada | Media (6.5) | 0.50% | — | Juniper JunosJuniper Junos OS Evolved | 13/10/2023 | 17/6/2026 | An Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in the management daemon (mgd) process of Juniper Networks Junos OS and Junos OS Evolved allows a network-based authenticated low-privileged attacker, by executing a specific command via NETCONF, to cause a CPU Denial of Service… | |
| Modificada | Alta (8.8) | 0.58% | — | Juniper JunosJuniper Junos OS Evolved | 13/10/2023 | 17/6/2026 | An Unchecked Return Value vulnerability in the user interfaces to the Juniper Networks Junos OS and Junos OS Evolved, the CLI, the XML API, the XML Management Protocol, the NETCONF Management Protocol, the gNMI interfaces, and the J-Web User Interfaces causes unintended effects such as demotion or elevation of… | |
| Modificada | Media (5.5) | 0.16% | — | Juniper JunosJuniper Junos OS Evolved | 13/10/2023 | 17/6/2026 | A Stack-based Buffer Overflow vulnerability in the CLI command of Juniper Networks Junos OS allows a low privileged attacker to execute a specific CLI commands leading to Denial of Service. Repeated actions by the attacker will create a sustained Denial of Service (DoS) condition. This issue affects Juniper Networks:… | |
| Modificada | Media (5.5) | 0.16% | — | Juniper JunosJuniper Junos OS Evolved | 13/10/2023 | 17/6/2026 | A Stack-based Buffer Overflow vulnerability in the CLI command of Juniper Networks Junos and Junos EVO allows a low privileged attacker to execute a specific CLI commands leading to Denial of Service. Repeated actions by the attacker will create a sustained Denial of Service (DoS) condition. This issue affects Juniper… | |
| Modificada | Media (5.5) | 0.16% | — | Juniper JunosJuniper Junos OS Evolved | 13/10/2023 | 17/6/2026 | A Stack-based Buffer Overflow vulnerability in the CLI command of Juniper Networks Junos OS allows a low privileged attacker to execute a specific CLI commands leading to Denial of Service. Repeated actions by the attacker will create a sustained Denial of Service (DoS) condition. This issue affects Juniper Networks:… | |
| Modificada | Alta (7.5) | 0.52% | — | Juniper JunosJuniper Junos OS Evolved | 12/10/2023 | 17/6/2026 | A Reachable Assertion vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows to send specific genuine PIM packets to the device resulting in rpd to crash causing a Denial of Service (DoS). Continued receipt and processing of this packet will create a sustained… | |
| Modificada | Media (6.5) | 0.27% | — | Juniper JunosJuniper Junos OS Evolved | 12/10/2023 | 17/6/2026 | An Improper Validation of Specified Quantity in Input vulnerability in the Layer-2 control protocols daemon (l2cpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated adjacent attacker who sends specific LLDP packets to cause a Denial of Service(DoS). This issue occurs when specific LLDP… | |
| Modificada | Media (5.4) | 0.17% | — | Juniper Junos OS Evolved | 11/10/2023 | 17/6/2026 | An Origin Validation vulnerability in MAC address validation of Juniper Networks Junos OS Evolved on PTX10001, PTX10004, PTX10008, and PTX10016 devices allows a network-adjacent attacker to bypass MAC address checking, allowing MAC addresses not intended to reach the adjacent LAN to be forwarded to the downstream… | |
| Modificada | Media (5.4) | 0.18% | — | Juniper Junos OS Evolved | 11/10/2023 | 17/6/2026 | An Origin Validation vulnerability in MAC address validation of Juniper Networks Junos OS Evolved on PTX10003 Series allows a network-adjacent attacker to bypass MAC address checking, allowing MAC addresses not intended to reach the adjacent LAN to be forwarded to the downstream network. Due to this issue, the router… | |
| Modificada | Media (5.5) | 0.17% | — | Juniper Junos OS Evolved | 11/10/2023 | 17/6/2026 | An Exposure of Sensitive Information vulnerability in the 'file copy' command of Junos OS Evolved allows a local, authenticated attacker with shell access to view passwords supplied on the CLI command-line. These credentials can then be used to provide unauthorized access to the remote system. | |
| Modificada | Alta (7.5) | 0.54% | — | Juniper JunosJuniper Junos OS Evolved | 11/10/2023 | 17/6/2026 | An Improper Handling of Exceptional Conditions vulnerability in AS PATH processing of Juniper Networks Junos OS and Junos OS Evolved allows an attacker to send a BGP update message with an AS PATH containing a large number of 4-byte ASes, leading to a Denial of Service (DoS). Continued receipt and processing of these… | |
| Modificada | Alta (7.5) | 18% | — | Juniper JunosJuniper Junos OS Evolved | 1/9/2023 | 17/6/2026 | An Improper Input Validation vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS). When certain specific crafted BGP UPDATE messages are received over an established BGP session, one BGP… | |
| Modificada | Media (6.1) | 0.46% | — | Cisco Evolved Programmable Network ManagerCisco Prime Infrastructure | 16/8/2023 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager (EPNM) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface on an affected device. The vulnerability is due to… |