imPC@ndo EN

Vulnerabilità Juniper

1105 CVE

CVE-2024-39532
Media 6.3

An Insertion of Sensitive Information into Log File vulnerability in Juniper Networks Junos OS and Junos OS Evolved allows a local, authenticated attacker with high privileges to access sensitive information. When another user performs a specific operation, s…

juniper junos · juniper junos_os_evolved
0.00EPSS
CVE-2025-30652
Media 5.5

An Improper Handling of Exceptional Conditions vulnerability in routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a local, low-privileged attacker executing a CLI command to cause a Denial of Service (DoS). When asregex-op…

juniper junos · juniper junos_os_evolved
0.00EPSS
CVE-2025-21596
Media 5.5

An Improper Handling of Exceptional Conditions vulnerability in the command-line processing of Juniper Networks Junos OS on SRX1500, SRX4100, and SRX4200 devices allows a local, low-privileged authenticated attacker executing the 'show chassis environment pem'…

juniper junos
0.00EPSS
CVE-2024-21615
Media 5.0

An Incorrect Default Permissions vulnerability in Juniper Networks Junos OS and Junos OS Evolved allows a local, low-privileged attacker to access confidential information on the system. On all Junos OS and Junos OS Evolved platforms, when NETCONF traceoption…

juniper junos · juniper junos_os_evolved
0.00EPSS
CVE-2019-0072
Media 5.6

An Unprotected Storage of Credentials vulnerability in the identity and access management certificate generation procedure allows a local attacker to gain access to confidential information. This issue affects: Juniper Networks SBR Carrier: 8.4.1 versions prio…

juniper sbr_carrier
0.00EPSS
CVE-2025-52954
Alta 7.8

A Missing Authorization vulnerability in the internal virtual routing and forwarding (VRF) of Juniper Networks Junos OS Evolved allows a local, low-privileged user to gain root privileges, leading to a system compromise. Any low-privileged user with the capab…

juniper junos_os_evolved
0.00EPSS
CVE-2024-39511
Media 5.5

An Improper Input Validation vulnerability in the 802.1X Authentication (dot1x) Daemon of Juniper Networks Junos OS allows a local, low-privileged attacker with access to the CLI to cause a Denial of Service (DoS). On running a specific operational dot1x comm…

juniper junos
0.00EPSS
CVE-2023-28973
Alta 7.1

An Improper Authorization vulnerability in the 'sysmanctl' shell command of Juniper Networks Junos OS Evolved allows a local, authenticated attacker to execute administrative commands that could impact the integrity of the system or system availability. Admini…

juniper junos_os_evolved
0.00EPSS
CVE-2023-44201
Media 5.0

An Incorrect Permission Assignment for Critical Resource vulnerability in a specific file of Juniper Networks Junos OS and Junos OS Evolved allows a local authenticated attacker to read configuration changes without having the permissions. When a user with t…

juniper junos · juniper junos_os_evolved
0.00EPSS
CVE-2024-39513
Media 5.5

An Improper Input Validation vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved allows a local, low-privileged attacker to cause a Denial of Service (DoS). When a specific "clear" command is run, the Advanced Forwarding T…

juniper junos_os_evolved
0.00EPSS
CVE-2025-52963
Media 5.5

An Improper Access Control vulnerability in the User Interface (UI) of Juniper Networks Junos OS allows a local, low-privileged attacker to bring down an interface, leading to a Denial-of-Service. Users with "view" permissions can run a specific request inter…

juniper junos
0.00EPSS
CVE-2025-30655
Media 5.5

An Improper Check for Unusual or Exceptional Conditions vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a local, low-privileged attacker to cause a Denial-of-Service (DoS). When a specific "show bgp …

juniper junos · juniper junos_os_evolved
0.00EPSS
CVE-2026-33785
Alta 8.8

A Missing Authorization vulnerability in the CLI of Juniper Networks Junos OS on MX Series allows a local, authenticated user with low privileges to execute specific commands which will lead to a complete compromise of managed devices. Any user logged in, wit…

juniper junos
0.00EPSS
CVE-2024-30406
Media 5.5

A Cleartext Storage in a File on Disk vulnerability in Juniper Networks Junos OS Evolved ACX Series devices using the Paragon Active Assurance Test Agent software installed on network devices allows a local, authenticated attacker with high privileges to read …

juniper junos_os_evolved · juniper paragon_active_assurance_test_agent
0.00EPSS
CVE-2025-60007
Media 5.5

A NULL Pointer Dereference vulnerability in the chassis daemon (chassisd) of Juniper Networks Junos OS on MX, SRX and EX Series allows a local attacker with low privileges to cause a Denial-of-Service (DoS). When a user executes the 'show chassis' command wi…

juniper junos
0.00EPSS
CVE-2026-21916
Alta 7.3

A UNIX Symbolic Link (Symlink) Following vulnerability in the CLI of Juniper Networks Junos OS allows a local, authenticated attacker with low privileges to escalate their privileges to root which will lead to a complete compromise of the system. When after a…

juniper junos
0.00EPSS
CVE-2025-59959
Media 5.5

An Untrusted Pointer Dereference vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a local, authenticated attacker with low privileges to cause a Denial-of-Service (DoS). When the command 'show route <…

juniper junos · juniper junos_os_evolved
0.00EPSS
CVE-2026-57029
Media 5.3

A Missing Synchronization vulnerability in the flow collector handler of Juniper Networks Junos OS Evolved on QFX Series allows an adjacent, unauthenticated attacker to cause a Denial-of-Service (DoS). When the reachability of an sFlow collector changes, the…

juniper junos_os_evolved
0.00EPSS
CVE-2026-33779
Media 6.5

An Improper Following of a Certificate's Chain of Trust vulnerability in J-Web of Juniper Networks Junos OS on SRX Series allows a PITM to intercept the communication of the device and get access to confidential information and potentially modify it. When an …

juniper junos
0.00EPSS
CVE-2025-52989
Media 5.1

An Improper Neutralization of Delimiters vulnerability in the UI of Juniper Networks Junos OS and Junos OS Evolved allows a local, authenticated attacker with high privileges to modify the system configuration. A user with limited configuration and commit p…

juniper junos · juniper junos_os_evolved
0.00EPSS
CVE-2025-59961
Media 5.5

An Incorrect Permission Assignment for Critical Resource vulnerability in the Juniper DHCP daemon (jdhcpd) of Juniper Networks Junos OS and Junos OS Evolved allows a local, low-privileged user to write to the Unix socket used to manage the jdhcpd process, resu…

juniper junos · juniper junos_os_evolved
0.00EPSS
CVE-2025-52986
Media 5.5

A Missing Release of Memory after Effective Lifetime vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a local, low privileged user to cause an impact to the availability of the device. When RIB shardi…

juniper junos · juniper junos_os_evolved
0.00EPSS
CVE-2026-33788
Alta 7.8

A Missing Authentication for Critical Function vulnerability in the Flexible PIC Concentrators (FPCs) of Juniper Networks Junos OS Evolved on PTX Series allows a local, authenticated attacker with low privileges to gain direct access to FPCs installed in the d…

juniper junos_os_evolved
0.00EPSS
CVE-2026-21912
Media 5.5

A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in the method to collect FPC Ethernet firmware statistics of Juniper Networks Junos OS on MX10k Series allows a local, low-privileged attacker executing the 'show system firmware' CLI command to…

juniper junos
0.00EPSS
CVE-2026-57025
Media 5.5

A Return of Pointer Value Outside of Expected Range vulnerability in the fileio library of Juniper Networks Junos OS and Junos OS Evolved allows a local, low-privilged attacker to cause a Denial-of-Service (DoS). On EX Series, QFX Series and MX Series a low-p…

juniper junos · juniper junos_os_evolved
0.00EPSS