Vulnerabilities > Juniper > Junos > High

DATE CVE VULNERABILITY TITLE RISK
2023-01-13 CVE-2023-22403 Allocation of Resources Without Limits or Throttling vulnerability in Juniper Junos
An Allocation of Resources Without Limits or Throttling vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows a network-based, unauthenticated attacker to cause a Denial of Service (DoS). On QFX10K Series, Inter-Chassis Control Protocol (ICCP) is used in MC-LAG topologies to exchange control information between the devices in the topology.
network
low complexity
juniper CWE-770
7.5
2023-01-13 CVE-2023-22408 Improper Validation of Array Index vulnerability in Juniper Junos
An Improper Validation of Array Index vulnerability in the SIP ALG of Juniper Networks Junos OS on SRX 5000 Series allows a network-based, unauthenticated attacker to cause a Denial of Service (DoS).
network
low complexity
juniper CWE-129
7.5
2023-01-13 CVE-2023-22411 Out-of-bounds Write vulnerability in Juniper Junos
An Out-of-Bounds Write vulnerability in Flow Processing Daemon (flowd) of Juniper Networks Junos OS allows an unauthenticated, network-based attacker to cause Denial of Service (DoS).
network
low complexity
juniper CWE-787
7.5
2023-01-13 CVE-2023-22412 Improper Locking vulnerability in Juniper Junos
An Improper Locking vulnerability in the SIP ALG of Juniper Networks Junos OS on MX Series with MS-MPC or MS-MIC card and SRX Series allows an unauthenticated, network-based attacker to cause a flow processing daemon (flowd) crash and thereby a Denial of Service (DoS).
network
low complexity
juniper CWE-667
7.5
2023-01-13 CVE-2023-22413 Unspecified vulnerability in Juniper Junos
An Improper Check or Handling of Exceptional Conditions vulnerability in the IPsec library of Juniper Networks Junos OS allows a network-based, unauthenticated attacker to cause Denial of Service (DoS).
network
low complexity
juniper
7.5
2023-01-13 CVE-2023-22415 Out-of-bounds Write vulnerability in Juniper Junos
An Out-of-Bounds Write vulnerability in the H.323 ALG of Juniper Networks Junos OS allows an unauthenticated, network-based attacker to cause Denial of Service (DoS).
network
low complexity
juniper CWE-787
7.5
2023-01-13 CVE-2023-22416 Classic Buffer Overflow vulnerability in Juniper Junos
A Buffer Overflow vulnerability in SIP ALG of Juniper Networks Junos OS allows a network-based, unauthenticated attacker to cause a Denial of Service (DoS).
network
low complexity
juniper CWE-120
7.5
2023-01-13 CVE-2023-22417 Memory Leak vulnerability in Juniper Junos
A Missing Release of Memory after Effective Lifetime vulnerability in the Flow Processing Daemon (flowd) of Juniper Networks Junos OS allows a network-based, unauthenticated attacker to cause a Denial of Service (DoS).
network
low complexity
juniper CWE-401
7.5
2022-12-22 CVE-2022-22184 Improper Input Validation vulnerability in Juniper Junos and Junos OS Evolved
An Improper Input Validation vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated network-based attacker to cause a Denial of Service (DoS).
network
low complexity
juniper CWE-20
7.5
2022-10-18 CVE-2022-22201 Improper Input Validation vulnerability in Juniper Junos
An Improper Validation of Specified Index, Position, or Offset in Input vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows an unauthenticated network-based attacker to cause a Denial of Service (DoS).
network
low complexity
juniper CWE-20
7.5