Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2693▼ 76 respecto a la semana anterior
Críticas / altas1446▲ 304 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)64▼ 462 respecto a la semana anterior
11 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.8) | 2.0% | — | Juniper JunosJuniper Srx100Juniper Srx110Juniper Srx1400+9 | 14/10/2014 | 17/6/2026 | The Juniper SRX Series devices with Junos 11.4 before 11.4R12-S4, 12.1X44 before 12.1X44-D40, 12.1X45 before 12.1X45-D30, 12.1X46 before 12.1X46-D25, and 12.1X47 before 12.1X47-D10, when an Application Layer Gateway (ALG) is enabled, allows remote attackers to cause a denial of service (flowd crash) via a crafted… | |
| Modificada | Media (5.4) | 1.7% | — | Juniper JunosJuniper Srx100Juniper Srx110Juniper Srx1400+9 | 11/7/2014 | 17/6/2026 | Juniper Junos 11.4 before 11.4R8, 12.1 before 12.1R5, 12.1X44 before 12.1X44-D20, 12.1X45 before 12.1X45-D15, 12.1X46 before 12.1X46-D10, and 12.1X47 before 12.1X47-D10 on SRX Series devices, allows remote attackers to cause a denial of service (flowd crash) via a malformed packet, related to translating IPv6 to IPv4. | |
| Modificada | Alta (7.8) | 3.4% | — | Juniper JunosJuniper Srx100Juniper Srx110Juniper Srx1400+9 | 11/7/2014 | 17/6/2026 | Juniper Junos 11.4 before 11.4R12, 12.1X44 before 12.1X44-D32, 12.1X45 before 12.1X45-D25, 12.1X46 before 12.1X46-D20, and 12.1X47 before 12.1X47-D10 on SRX Series devices, when NAT protocol translation from IPv4 to IPv6 is enabled, allows remote attackers to cause a denial of service (flowd hang or crash) via a… | |
| Modificada | Alta (7.8) | 1.8% | — | Juniper JunosJuniper Srx100Juniper Srx110Juniper Srx1400+9 | 11/7/2014 | 17/6/2026 | Juniper Junos 12.1X46 before 12.1X46-D20 and 12.1X47 before 12.1X47-D10 on SRX Series devices allows remote attackers to cause a denial of service (flowd crash) via a crafted SIP packet. | |
| Modificada | Media (5) | 1.6% | — | Juniper JunosJuniper Srx100Juniper Srx110Juniper Srx210+4 | 14/4/2014 | 17/6/2026 | Unspecified vulnerability in Juniper Junos before 11.4R10-S1, before 11.4R11, 12.1X44 before 12.1X44-D26, 12.1X44 before 12.1X44-D30, 12.1X45 before 12.1X45-D20, and 12.1X46 before 12.1X46-D10, when Dynamic IPsec VPN is configured, allows remote attackers to cause a denial of service (new Dynamic VPN connection… | |
| Modificada | Alta (7.1) | 2.3% | — | Juniper JunosJuniper Srx100Juniper Srx110Juniper Srx1400+9 | 15/1/2014 | 17/6/2026 | Juniper Junos 10.4S before 10.4S15, 10.4R before 10.4R16, 11.4 before 11.4R9, and 12.1R before 12.1R7 on SRX Series service gateways allows remote attackers to cause a denial of service (flowd crash) via a crafted IP packet. | |
| Modificada | Alta (7.8) | 3.6% | — | Juniper JunosJuniper Srx100Juniper Srx110Juniper Srx1400+9 | 11/1/2014 | 17/6/2026 | Juniper Junos before 10.4 before 10.4R16, 11.4 before 11.4R8, 12.1R before 12.1R7, 12.1X44 before 12.1X44-D20, and 12.1X45 before 12.1X45-D10 on SRX Series service gateways, when used as a UAC enforcer and captive portal is enabled, allows remote attackers to cause a denial of service (flowd crash) via a crafted HTTP… | |
| Modificada | Alta (7.8) | 1.9% | — | Juniper JunosJuniper Srx100Juniper Srx110Juniper Srx1400+9 | 11/7/2013 | 16/6/2026 | flowd in Juniper Junos 10.4 before 10.4R11 on SRX devices, when the MSRPC Application Layer Gateway (ALG) is enabled, allows remote attackers to cause a denial of service (daemon crash) via crafted MSRPC requests, aka PR 772834. | |
| Modificada | Alta (7.8) | 2.6% | — | Juniper JunosJuniper Srx100Juniper Srx110Juniper Srx1400+9 | 11/7/2013 | 16/6/2026 | flowd in Juniper Junos 10.4 before 10.4S14, 11.2 and 11.4 before 11.4R6-S2, and 12.1 before 12.1R6 on SRX devices, when certain Application Layer Gateways (ALGs) are enabled, allows remote attackers to cause a denial of service (daemon crash) via crafted TCP packets, aka PRs 727980, 806269, and 835593. | |
| Modificada | Alta (10) | 7.6% | — | Juniper JunosJuniper Srx100Juniper Srx110Juniper Srx1400+9 | 11/7/2013 | 16/6/2026 | Buffer overflow in flowd in Juniper Junos 10.4 before 10.4S14, 11.4 before 11.4R7, 12.1 before 12.1R6, and 12.1X44 before 12.1X44-D15 on SRX devices, when Captive Portal is enabled with the UAC enforcer role, allows remote attackers to execute arbitrary code via crafted HTTP requests, aka PR 849100. | |
| Modificada | Alta (7.8) | 2.8% | — | Juniper JunosJuniper Srx100Juniper Srx110Juniper Srx1400+9 | 11/7/2013 | 16/6/2026 | flowd in Juniper Junos 10.4 before 10.4S14, 11.4 before 11.4R8, 12.1 before 12.1R7, and 12.1X44 before 12.1X44-D15 on SRX devices, when PIM and NAT are enabled, allows remote attackers to cause a denial of service (daemon crash) via crafted PIM packets, aka PR 842253. |