Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2737▼ 486 respecto a la semana anterior
Críticas / altas1302▼ 188 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
248 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 18% | — | Juniper JunosJuniper Junos OS Evolved | 1/9/2023 | 17/6/2026 | An Improper Input Validation vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS). When certain specific crafted BGP UPDATE messages are received over an established BGP session, one BGP… | |
| Modificada | Media (6.5) | 0.30% | — | Juniper JunosJuniper Junos OS Evolved | 14/7/2023 | 17/6/2026 | An Improper Check or Handling of Exceptional Conditions vulnerability in the Layer-2 control protocols daemon (l2cpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated adjacent attacker to cause a Denial of Service (DoS). When a malformed LLDP packet is received, l2cpd will crash and restart.… | |
| Modificada | Media (5.5) | 0.19% | — | Juniper JunosJuniper Junos OS Evolved | 14/7/2023 | 17/6/2026 | A Reachable Assertion vulnerability in Routing Protocol Daemon (RPD) of Juniper Networks Junos OS and Junos OS Evolved allows a locally-based, low-privileged attacker to cause a Denial of Service (DoS). On all Junos OS and Junos OS Evolved, when a specific L2VPN command is run, RPD will crash and restart. Continued… | |
| Modificada | Media (4.7) | 0.16% | — | Juniper JunosJuniper Junos OS Evolved | 14/7/2023 | 17/6/2026 | A Use of an Uninitialized Resource vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a local, authenticated attacker with low privileges to cause a Denial of Service (DoS). On all Junos OS and Junos OS Evolved platforms, in a Multicast only Fast Reroute (MoFRR)… | |
| Modificada | Media (6.5) | 0.32% | — | Juniper Junos OS Evolved | 14/7/2023 | 17/6/2026 | A Use After Free vulnerability in the packet forwarding engine (PFE) of Juniper Networks Junos OS Evolved on PTX10001-36MR, and PTX10004, PTX10008, PTX10016 with LC1201/1202 allows an adjacent, unauthenticated attacker to cause a Denial of Service (DoS). The process 'aftman-bt' will crash after multiple flaps on a… | |
| Modificada | Alta (7.5) | 0.65% | — | Juniper JunosJuniper Junos OS Evolved | 21/6/2023 | 17/6/2026 | An Improper Input Validation vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS). When a BGP update message is received over an established BGP session, and that message contains a… | |
| Modificada | Alta (8.8) | 1.5% | — | Juniper Junos OS Evolved | 17/4/2023 | 17/6/2026 | An OS Command Injection vulnerability in gRPC Network Operations Interface (gNOI) server module of Juniper Networks Junos OS Evolved allows an authenticated, low privileged, network based attacker to inject shell commands and execute code. This issue affects Juniper Networks Junos OS Evolved 21.4 version 21.4R1-EVO… | |
| Modificada | Alta (7.5) | 0.65% | — | Juniper JunosJuniper Junos OS Evolved | 17/4/2023 | 17/6/2026 | A Missing Release of Memory after Effective Lifetime vulnerability in the routing protocol daemon of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, network based attacker to cause a Denial of Service (DoS). In a BGP rib sharding scenario, when an attribute of an active BGP route is updated… | |
| Modificada | Media (6.5) | 0.30% | — | Juniper JunosJuniper Junos OS Evolved | 17/4/2023 | 17/6/2026 | An Improper Input Validation vulnerability in the kernel of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, adjacent attacker to cause a Denial of Service (DoS). If the receipt of router advertisements is enabled on an interface and a specifically malformed RA packet is received, memory… | |
| Modificada | Media (5.5) | 0.17% | — | Juniper JunosJuniper Junos OS Evolved | 17/4/2023 | 17/6/2026 | A Use After Free vulnerability in the routing protocol daemon of Juniper Networks Junos OS and Junos OS Evolved allows a locally authenticated attacker with low privileges to cause Denial of Service (DoS). In a rib sharding scenario the rpd process will crash shortly after specific CLI command is issued. This issue is… | |
| Modificada | Media (5.3) | 0.47% | — | Juniper Junos OS Evolved | 17/4/2023 | 17/6/2026 | An Insecure Default Initialization of Resource vulnerability in Juniper Networks Junos OS Evolved allows an unauthenticated, network based attacker to read certain confidential information. In the default configuration it is possible to read confidential information about locally configured (administrative) users of… | |
| Modificada | Alta (7.1) | 0.15% | — | Juniper Junos OS Evolved | 17/4/2023 | 17/6/2026 | An Improper Authorization vulnerability in the 'sysmanctl' shell command of Juniper Networks Junos OS Evolved allows a local, authenticated attacker to execute administrative commands that could impact the integrity of the system or system availability. Administrative functions such as daemon restarting, routing… | |
| Modificada | Alta (7.5) | 0.62% | — | Juniper Junos OS EvolvedJuniper Junos | 17/4/2023 | 17/6/2026 | A Use of Uninitialized Resource vulnerability in the Border Gateway Protocol (BGP) software of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated network-based attacker to send specific genuine BGP packets to a device configured with BGP to cause a Denial of Service (DoS) by crashing the Routing… | |
| Modificada | Alta (7.8) | 0.16% | — | Juniper Junos OS Evolved | 17/4/2023 | 17/6/2026 | An Incorrect Default Permissions vulnerability in Juniper Networks Junos OS Evolved allows a low-privileged local attacker with shell access to modify existing files or execute commands as root. The issue is caused by improper file and directory permissions on certain system files, allowing an attacker with access to… | |
| Modificada | Alta (7.5) | 0.65% | — | Juniper JunosJuniper Junos OS Evolved | 17/4/2023 | 17/6/2026 | — | |
| Modificada | Alta (8.2) | 0.17% | — | Juniper Junos OS Evolved | 17/4/2023 | 17/6/2026 | An Incorrect Permission Assignment for Critical Resource vulnerability in Juniper Networks Junos OS Evolved allows a local, authenticated low-privileged attacker to copy potentially malicious files into an existing Docker container on the local system. A follow-on administrator could then inadvertently start the… | |
| Modificada | Media (6.5) | 0.31% | — | Juniper JunosJuniper Junos OS Evolved | 13/1/2023 | 17/6/2026 | An Incomplete Cleanup vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent, unauthenticated attacker to cause a Denial of Service (DoS). An rpd crash can occur when an MPLS TE tunnel configuration change occurs on a directly connected router. This… | |
| Modificada | Media (6.5) | 0.31% | — | Juniper JunosJuniper Junos OS Evolved | 13/1/2023 | 17/6/2026 | A Missing Release of Memory after Effective Lifetime vulnerability in the kernel of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent, unauthenticated attacker to cause a Denial of Service (DoS). In a segment-routing scenario with OSPF as IGP, when a peer interface continuously flaps, next-hop churn… | |
| Modificada | Media (5.9) | 0.52% | — | Juniper Junos OS Evolved | 13/1/2023 | 17/6/2026 | A Use After Free vulnerability in the kernel of Juniper Networks Junos OS Evolved allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS). In a Non Stop Routing (NSR) scenario, an unexpected kernel restart might be observed if "bgp auto-discovery" is enabled and if there is a BGP neighbor… | |
| Modificada | Alta (7.5) | 0.62% | — | Juniper JunosJuniper Junos OS Evolved | 13/1/2023 | 17/6/2026 | An Improper Validation of Array Index vulnerability in the Advanced Forwarding Toolkit Manager daemon (aftmand) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS). On the PTX10008 and PTX10016 platforms running Junos OS or Junos OS… | |
| Modificada | Alta (7.5) | 0.62% | — | Juniper Junos OS Evolved | 13/1/2023 | 17/6/2026 | An Uncontrolled Resource Consumption vulnerability in the PFE management daemon (evo-pfemand) of Juniper Networks Junos OS Evolved allows an unauthenticated, network-based attacker to cause an FPC crash leading to a Denial of Service (DoS). When a specific SNMP GET operation or a specific CLI command is executed this… | |
| Modificada | Media (5.5) | 0.17% | — | Juniper JunosJuniper Junos OS Evolved | 13/1/2023 | 17/6/2026 | An Access of Uninitialized Pointer vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a locally authenticated attacker with low privileges to cause a Denial of Service (DoS). When an MPLS ping is performed on BGP LSPs, the RPD might crash. Repeated execution of… | |
| Modificada | Media (6.1) | 0.18% | — | Juniper Junos OS Evolved | 13/1/2023 | 17/6/2026 | An Allocation of Resources Without Limits or Throttling weakness in the memory management of the Packet Forwarding Engine (PFE) on Juniper Networks Junos OS Evolved PTX10003 Series devices allows an adjacently located attacker who has established certain preconditions and knowledge of the environment to send certain… | |
| Modificada | Alta (7.5) | 0.62% | — | Juniper JunosJuniper Junos OS Evolved | 13/1/2023 | 17/6/2026 | An Improper Check for Unusual or Exceptional Conditions vulnerability in BGP route processing of Juniper Networks Junos OS and Junos OS Evolved allows an attacker to cause Routing Protocol Daemon (RPD) crash by sending a BGP route with invalid next-hop resulting in a Denial of Service (DoS). Continued receipt and… | |
| Modificada | Alta (7.5) | 0.68% | — | Juniper JunosJuniper Junos OS Evolved | 22/12/2022 | 17/6/2026 | An Improper Input Validation vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated network-based attacker to cause a Denial of Service (DoS). If a BGP update message is received over an established BGP session, and that message contains a… |