Vulnerabilities > Juniper > Junos OS Evolved > 21.3

DATE CVE VULNERABILITY TITLE RISK
2023-07-14 CVE-2023-36836 Unspecified vulnerability in Juniper Junos
A Use of an Uninitialized Resource vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a local, authenticated attacker with low privileges to cause a Denial of Service (DoS). On all Junos OS and Junos OS Evolved platforms, in a Multicast only Fast Reroute (MoFRR) scenario, the rpd process can crash when a a specific low privileged CLI command is executed.
local
high complexity
juniper
4.7
2023-01-13 CVE-2023-22401 Improper Validation of Array Index vulnerability in Juniper Junos and Junos OS Evolved
An Improper Validation of Array Index vulnerability in the Advanced Forwarding Toolkit Manager daemon (aftmand) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS).
network
low complexity
juniper CWE-129
7.5
2022-10-18 CVE-2022-22238 Improper Check for Unusual or Exceptional Conditions vulnerability in Juniper Junos
An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, adjacent attacker to cause a Denial of Service (DoS).
low complexity
juniper CWE-754
6.5
2022-10-18 CVE-2022-22239 Improper Privilege Management vulnerability in Juniper Junos OS Evolved
An Execution with Unnecessary Privileges vulnerability in Management Daemon (mgd) of Juniper Networks Junos OS Evolved allows a locally authenticated attacker with low privileges to escalate their privileges on the device and potentially remote systems.
local
low complexity
juniper CWE-269
8.8
2022-10-18 CVE-2022-22250 Unspecified vulnerability in Juniper Junos
An Improper Control of a Resource Through its Lifetime vulnerability in Packet Forwarding Engine (PFE) of Juniper Networks Junos OS and Junos OS Evolved allows unauthenticated adjacent attacker to cause a Denial of Service (DoS).
low complexity
juniper
6.5
2022-07-20 CVE-2022-22212 Unspecified vulnerability in Juniper Junos OS Evolved 21.2/21.3
An Allocation of Resources Without Limits or Throttling vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved allows unauthenticated network based attacker to cause a Denial of Service (DoS).
network
low complexity
juniper
7.5
2022-07-20 CVE-2022-22213 Unspecified vulnerability in Juniper Junos and Junos OS Evolved
A vulnerability in Handling of Undefined Values in the routing protocol daemon (RPD) process of Juniper Networks Junos OS and Junos OS Evolved may allow an unauthenticated network-based attacker to crash the RPD process by sending a specific BGP update while the system is under heavy load, leading to a Denial of Service (DoS).
network
high complexity
juniper
5.9
2022-07-20 CVE-2022-22214 Unspecified vulnerability in Juniper Junos
An Improper Input Validation vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent attacker to cause a PFE crash and thereby a Denial of Service (DoS).
low complexity
juniper
6.5
2022-04-14 CVE-2022-22183 Unspecified vulnerability in Juniper Junos OS Evolved
An Improper Access Control vulnerability in Juniper Networks Junos OS Evolved allows a network-based unauthenticated attacker who is able to connect to a specific open IPv4 port, which in affected releases should otherwise be unreachable, to cause the CPU to consume all resources as more traffic is sent to the port to create a Denial of Service (DoS) condition.
network
low complexity
juniper
7.5
2022-04-14 CVE-2022-22195 Unspecified vulnerability in Juniper Junos OS Evolved
An Improper Update of Reference Count vulnerability in the kernel of Juniper Networks Junos OS Evolved allows an unauthenticated, network-based attacker to trigger a counter overflow, eventually causing a Denial of Service (DoS).
network
low complexity
juniper
7.5