Vulnerabilities > Juniper

DATE CVE VULNERABILITY TITLE RISK
2023-01-13 CVE-2023-22403 Allocation of Resources Without Limits or Throttling vulnerability in Juniper Junos
An Allocation of Resources Without Limits or Throttling vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows a network-based, unauthenticated attacker to cause a Denial of Service (DoS). On QFX10K Series, Inter-Chassis Control Protocol (ICCP) is used in MC-LAG topologies to exchange control information between the devices in the topology.
network
low complexity
juniper CWE-770
7.5
2023-01-13 CVE-2023-22404 Out-of-bounds Write vulnerability in Juniper Junos
An Out-of-bounds Write vulnerability in the Internet Key Exchange Protocol daemon (iked) of Juniper Networks Junos OS on SRX series and MX with SPC3 allows an authenticated, network-based attacker to cause a Denial of Service (DoS).
network
low complexity
juniper CWE-787
6.5
2023-01-13 CVE-2023-22405 Unspecified vulnerability in Juniper Junos
An Improper Preservation of Consistency Between Independent Representations of Shared State vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows an adjacent, unauthenticated attacker to cause a Denial of Service (DoS) to device due to out of resources.
low complexity
juniper
6.5
2023-01-13 CVE-2023-22406 Memory Leak vulnerability in Juniper Junos
A Missing Release of Memory after Effective Lifetime vulnerability in the kernel of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent, unauthenticated attacker to cause a Denial of Service (DoS).
low complexity
juniper CWE-401
6.5
2023-01-13 CVE-2023-22407 Incomplete Cleanup vulnerability in Juniper Junos
An Incomplete Cleanup vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent, unauthenticated attacker to cause a Denial of Service (DoS).
low complexity
juniper CWE-459
6.5
2023-01-13 CVE-2023-22408 Improper Validation of Array Index vulnerability in Juniper Junos
An Improper Validation of Array Index vulnerability in the SIP ALG of Juniper Networks Junos OS on SRX 5000 Series allows a network-based, unauthenticated attacker to cause a Denial of Service (DoS).
network
low complexity
juniper CWE-129
7.5
2023-01-13 CVE-2023-22409 Improper Validation of Specified Quantity in Input vulnerability in Juniper Junos
An Unchecked Input for Loop Condition vulnerability in a NAT library of Juniper Networks Junos OS allows a local authenticated attacker with low privileges to cause a Denial of Service (DoS).
local
low complexity
juniper CWE-1284
5.5
2023-01-13 CVE-2023-22410 Memory Leak vulnerability in Juniper Junos
A Missing Release of Memory after Effective Lifetime vulnerability in the Juniper Networks Junos OS on MX Series platforms with MPC10/MPC11 line cards, allows an unauthenticated adjacent attacker to cause a Denial of Service (DoS).
low complexity
juniper CWE-401
6.5
2023-01-13 CVE-2023-22411 Out-of-bounds Write vulnerability in Juniper Junos
An Out-of-Bounds Write vulnerability in Flow Processing Daemon (flowd) of Juniper Networks Junos OS allows an unauthenticated, network-based attacker to cause Denial of Service (DoS).
network
low complexity
juniper CWE-787
7.5
2023-01-13 CVE-2023-22412 Improper Locking vulnerability in Juniper Junos
An Improper Locking vulnerability in the SIP ALG of Juniper Networks Junos OS on MX Series with MS-MPC or MS-MIC card and SRX Series allows an unauthenticated, network-based attacker to cause a flow processing daemon (flowd) crash and thereby a Denial of Service (DoS).
network
low complexity
juniper CWE-667
7.5