Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
357 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.9) | 0.52% | — | Juniper Junos OS Evolved | 13/1/2023 | 17/6/2026 | A Use After Free vulnerability in the kernel of Juniper Networks Junos OS Evolved allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS). In a Non Stop Routing (NSR) scenario, an unexpected kernel restart might be observed if "bgp auto-discovery" is enabled and if there is a BGP neighbor… | |
| Modificada | Alta (7.5) | 0.62% | — | Juniper JunosJuniper Junos OS Evolved | 13/1/2023 | 17/6/2026 | An Improper Validation of Array Index vulnerability in the Advanced Forwarding Toolkit Manager daemon (aftmand) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS). On the PTX10008 and PTX10016 platforms running Junos OS or Junos OS… | |
| Modificada | Alta (7.5) | 0.62% | — | Juniper Junos OS Evolved | 13/1/2023 | 17/6/2026 | An Uncontrolled Resource Consumption vulnerability in the PFE management daemon (evo-pfemand) of Juniper Networks Junos OS Evolved allows an unauthenticated, network-based attacker to cause an FPC crash leading to a Denial of Service (DoS). When a specific SNMP GET operation or a specific CLI command is executed this… | |
| Modificada | Media (5.5) | 0.17% | — | Juniper JunosJuniper Junos OS Evolved | 13/1/2023 | 17/6/2026 | An Access of Uninitialized Pointer vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a locally authenticated attacker with low privileges to cause a Denial of Service (DoS). When an MPLS ping is performed on BGP LSPs, the RPD might crash. Repeated execution of… | |
| Modificada | Media (6.1) | 0.18% | — | Juniper Junos OS Evolved | 13/1/2023 | 17/6/2026 | An Allocation of Resources Without Limits or Throttling weakness in the memory management of the Packet Forwarding Engine (PFE) on Juniper Networks Junos OS Evolved PTX10003 Series devices allows an adjacently located attacker who has established certain preconditions and knowledge of the environment to send certain… | |
| Modificada | Alta (7.5) | 0.62% | — | Juniper JunosJuniper Junos OS Evolved | 13/1/2023 | 17/6/2026 | An Improper Check for Unusual or Exceptional Conditions vulnerability in BGP route processing of Juniper Networks Junos OS and Junos OS Evolved allows an attacker to cause Routing Protocol Daemon (RPD) crash by sending a BGP route with invalid next-hop resulting in a Denial of Service (DoS). Continued receipt and… | |
| Modificada | Alta (7.5) | 0.68% | — | Juniper JunosJuniper Junos OS Evolved | 22/12/2022 | 17/6/2026 | An Improper Input Validation vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated network-based attacker to cause a Denial of Service (DoS). If a BGP update message is received over an established BGP session, and that message contains a… | |
| Modificada | Media (6.5) | 0.31% | — | Juniper JunosJuniper Junos OS Evolved | 18/10/2022 | 17/6/2026 | An Improper Control of a Resource Through its Lifetime vulnerability in Packet Forwarding Engine (PFE) of Juniper Networks Junos OS and Junos OS Evolved allows unauthenticated adjacent attacker to cause a Denial of Service (DoS). In an EVPN-MPLS scenario, if MAC is learned locally on an access interface but later a… | |
| Modificada | Alta (7.3) | 0.19% | — | Juniper Junos OS Evolved | 18/10/2022 | 17/6/2026 | An Incorrect Permission Assignment vulnerability in shell processing of Juniper Networks Junos OS Evolved allows a low-privileged local user to modify the contents of a configuration file which could cause another user to execute arbitrary commands within the context of the follow-on user's session. If the follow-on… | |
| Modificada | Alta (7.5) | 0.62% | — | Juniper Junos OS Evolved | 18/10/2022 | 17/6/2026 | An Improper Input Validation vulnerability in ingress TCP segment processing of Juniper Networks Junos OS Evolved allows a network-based unauthenticated attacker to send a crafted TCP segment to the device, triggering a kernel panic, leading to a Denial of Service (DoS) condition. Continued receipt and processing of… | |
| Modificada | Media (5.5) | 0.20% | — | Juniper JunosJuniper Junos OS Evolved | 18/10/2022 | 17/6/2026 | An Allocation of Resources Without Limits or Throttling and a Missing Release of Memory after Effective Lifetime vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a locally authenticated low privileged attacker to cause a Denial of Sevice (DoS). In a… | |
| Modificada | Alta (8.8) | 0.18% | — | Juniper Junos OS Evolved | 18/10/2022 | 17/6/2026 | An Execution with Unnecessary Privileges vulnerability in Management Daemon (mgd) of Juniper Networks Junos OS Evolved allows a locally authenticated attacker with low privileges to escalate their privileges on the device and potentially remote systems. This vulnerability allows a locally authenticated attacker with… | |
| Modificada | Media (6.5) | 0.29% | — | Juniper JunosJuniper Junos OS Evolved | 18/10/2022 | 17/6/2026 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, adjacent attacker to cause a Denial of Service (DoS). When an incoming RESV message corresponding to a protected LSP is malformed it… | |
| Modificada | Media (5.5) | 0.18% | — | Juniper JunosJuniper Junos OS Evolved | 18/10/2022 | 17/6/2026 | An Unchecked Return Value to NULL Pointer Dereference vulnerability in Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a locally authenticated attacker with low privileges to cause a Denial of Service (DoS). In Segment Routing (SR) to Label Distribution Protocol (LDP)… | |
| Modificada | Media (6.5) | 0.32% | — | Juniper JunosJuniper Junos OS Evolved | 18/10/2022 | 17/6/2026 | An Improper Input Validation vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent unauthenticated attacker to cause DoS (Denial of Service). If another router generates more than one specific valid OSPFv3 LSA then rpd will crash while processing these… | |
| Modificada | Media (5.3) | 0.61% | — | Juniper Junos OS Evolved | 18/10/2022 | 17/6/2026 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved on ACX7000 Series allows an unauthenticated network-based attacker to cause a partial Denial of Service (DoS). On receipt of specific IPv6 transit traffic, Junos OS Evolved… | |
| Modificada | Media (5.9) | 0.48% | — | Juniper JunosJuniper Junos OS Evolved | 18/10/2022 | 17/6/2026 | A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated attacker with an established BGP session to cause a Denial of Service (DoS). In a BGP multipath scenario, when one of the contributing… | |
| Modificada | Media (6.5) | 0.31% | — | Juniper JunosJuniper Junos OS Evolved | 18/10/2022 | 17/6/2026 | An Improper Check or Handling of Exceptional Conditions vulnerability in the processing of a malformed OSPF TLV in Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated adjacent attacker to cause the periodic packet management daemon (PPMD) process to go into an infinite loop, which in turn can… | |
| Modificada | Media (5.9) | 0.48% | — | Juniper JunosJuniper Junos OS Evolved | 18/10/2022 | 17/6/2026 | A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Routing Protocol Daemon (rpd) of Juniper Networks Junos OS, Junos OS Evolved allows a network-based unauthenticated attacker to cause a Denial of Service (DoS). When a BGP flow route with redirect IP extended community is received, and the… | |
| Modificada | Media (5.9) | 0.61% | — | Juniper JunosJuniper Junos OS Evolved | 18/10/2022 | 17/6/2026 | Due to the Improper Handling of an Unexpected Data Type in the processing of EVPN routes on Juniper Networks Junos OS and Junos OS Evolved, an attacker in direct control of a BGP client connected to a route reflector, or via a machine in the middle (MITM) attack, can send a specific EVPN route contained within a BGP… | |
| Modificada | Alta (7.5) | 0.67% | — | Juniper Junos OS Evolved | 18/10/2022 | 17/6/2026 | A limitless resource allocation vulnerability in FPC resources of Juniper Networks Junos OS Evolved on PTX Series allows an unprivileged attacker to cause Denial of Service (DoS). Continuously polling the SNMP jnxCosQstatTable causes the FPC to run out of GUID space, causing a Denial of Service to the FPC resources.… | |
| Modificada | Media (5.9) | 0.46% | — | Juniper JunosJuniper Junos OS Evolved | 18/10/2022 | 17/6/2026 | A Use After Free vulnerability in the Routing Protocol Daemon (rdp) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated network-based attacker to cause Denial of Service (DoS). When a BGP session flap happens, a Use After Free of a memory location that was assigned to another object can occur,… | |
| Modificada | Alta (7.5) | 0.76% | — | Juniper Junos OS Evolved | 18/10/2022 | 17/6/2026 | An Improper Validation of Syntactic Correctness of Input vulnerability in the kernel of Juniper Networks Junos OS Evolved on PTX series allows a network-based, unauthenticated attacker to cause a Denial of Service (DoS). When an incoming TCP packet destined to the device is malformed there is a possibility of a kernel… | |
| Modificada | Media (5.5) | 0.63% | — | Juniper JunosJuniper Junos OS Evolved | 20/7/2022 | 17/6/2026 | A Missing Release of File Descriptor or Handle after Effective Lifetime vulnerability in plugable authentication module (PAM) of Juniper Networks Junos OS and Junos OS Evolved allows a locally authenticated attacker with low privileges to cause a Denial of Service (DoS). It is possible that after the termination of a… | |
| Modificada | Media (6.5) | 0.32% | — | Juniper JunosJuniper Junos OS Evolved | 20/7/2022 | 17/6/2026 | An Improper Input Validation vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent attacker to cause a PFE crash and thereby a Denial of Service (DoS). An FPC will crash and reboot after receiving a specific transit IPv6 packet over MPLS. Continued… |