← Back

Juniper

juniper

1,105 CVEs • 432 products

Products (432)

Click to collapse
Toggle
Junos
junos
Junos Space
junos_space
Screenos
screenos
Srx100
srx100
Srx110
srx110
Srx1400
srx1400
Srx210
srx210
Srx220
srx220
Srx240
srx240
Srx3400
srx3400
Srx3600
srx3600
Srx550
srx550
Srx650
srx650
Srx5600
srx5600
Srx5800
srx5800
Ive Os
ive_os
Libslax
libslax
Junose
junose
Ctpview
ctpview
Mist Cloud Ui
mist_cloud_ui
Junos E
junos_e
Secure Access
secure_access
Smartpass
smartpass
Contrail
contrail
Appformix
appformix
Netscreen 5gt
netscreen-5gt
Netscreen Idp
netscreen-idp
Junos J
junos_j
Junos M
junos_m
Junos T
junos_t
Junose E
junose_e
Junose J
junose_j
Junose M
junose_m
Junose T
junose_t
Dx
dx
Http Service
http_service
Src Pe
src_pe
Jnos
jnos
Idp
idp
Idp250
idp250
Idp75
idp75
Idp800
idp800
Idp8200
idp8200
Nsm3000
nsm3000
Nsmexpress
nsmexpress
Ringmaster
ringmaster

CVEs (1,105)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Juniper
3Netscreen 5200
Netscreen 5400Screenos
May 6, 2026
Jun 13, 2014
N/A· v4
N/A· v3
7.8 HIGH· v2
The Juniper Networks NetScreen Firewall devices with ScreenOS before 6.3r17, when configured to use the internal DNS lookup client, allows remote attackers to cause a denial of service (crash and reboot) via a sequence o...Show more
The Juniper Networks NetScreen Firewall devices with ScreenOS before 6.3r17, when configured to use the internal DNS lookup client, allows remote attackers to cause a denial of service (crash and reboot) via a sequence of malformed packets to the device IP.Show less
1Juniper
3Netscreen 5200
Netscreen 5400Screenos
May 6, 2026
Jun 13, 2014
N/A· v4
N/A· v3
7.8 HIGH· v2
Unspecified vulnerability in the Juniper Networks NetScreen Firewall products with ScreenOS before 6.3r17, when configured to use the internal DNS lookup client, allows remote attackers to cause a denial of service (cras...Show more
Unspecified vulnerability in the Juniper Networks NetScreen Firewall products with ScreenOS before 6.3r17, when configured to use the internal DNS lookup client, allows remote attackers to cause a denial of service (crash and reboot) via vectors related to a DNS lookup.Show less
1Juniper
18Fips Infranet Controller 6500
Fips Secure Access 4000Fips Secure Access 4500+15 more
May 6, 2026
Jun 13, 2014
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The Juniper Junos Pulse Secure Access Service (SSL VPN) devices with IVE OS before 7.4r5 and 8.x before 8.0r1 and Junos Pulse Access Control Service (UAC) before 4.4r5 and 5.x before 5.0r1 enable cipher suites with weak...Show more
The Juniper Junos Pulse Secure Access Service (SSL VPN) devices with IVE OS before 7.4r5 and 8.x before 8.0r1 and Junos Pulse Access Control Service (UAC) before 4.4r5 and 5.x before 5.0r1 enable cipher suites with weak encryption algorithms, which make it easier for remote attackers to obtain sensitive information by sniffing the network.Show less
1Juniper
3Junos Space
Junos Space Ja1500 ApplianceJunos Space Ja2500 Appliance
May 6, 2026
May 20, 2014
N/A· v4
N/A· v3
10.0 HIGH· v2
Unspecified vulnerability in Juniper Junos Space before 13.3R1.8, when the firewall in disabled, allows remote attackers to execute arbitrary commands via unspecified vectors.
1Juniper
3Network And Security Manager Software
Nsm3000Nsmexpress
May 6, 2026
May 19, 2014
N/A· v4
N/A· v3
10.0 HIGH· v2
Unspecified vulnerability in the NSM XDB service in Juniper NSM before 2012.2R8 allows remote attackers to execute arbitrary code via unspecified vectors.
5Canonical
DebianIbm+2 more
7Debian Linux
Forms ViewerJdk+4 more
May 6, 2026
Apr 16, 2014
N/A· v4
N/A· v3
10.0 HIGH· v2
Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JavaFX 2.2.51; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related t...Show more
Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JavaFX 2.2.51; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.Show less
4Canonical
DebianJuniper+1 more
6Debian Linux
JdkJre+3 more
May 6, 2026
Apr 16, 2014
N/A· v4
N/A· v3
5.8 MEDIUM· v2
Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality and integrity via vectors related to JNDI.
5Canonical
DebianIbm+2 more
7Debian Linux
Forms ViewerJdk+4 more
May 6, 2026
Apr 16, 2014
N/A· v4
N/A· v3
10.0 HIGH· v2
Unspecified vulnerability in Oracle Java SE 5.0u61, SE 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality, integrity, and availability via unknown...Show more
Unspecified vulnerability in Oracle Java SE 5.0u61, SE 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries.Show less
5Canonical
DebianIbm+2 more
7Debian Linux
Forms ViewerJdk+4 more
May 6, 2026
Apr 16, 2014
N/A· v4
N/A· v3
10.0 HIGH· v2
Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot.
5Canonical
DebianIbm+2 more
7Debian Linux
Forms ViewerJdk+4 more
May 6, 2026
Apr 16, 2014
N/A· v4
N/A· v3
4.0 MEDIUM· v2
Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality and integrity via unknown vectors related to...Show more
Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Security.Show less
5Canonical
DebianIbm+2 more
7Debian Linux
Forms ViewerJdk+4 more
May 6, 2026
Apr 16, 2014
N/A· v4
N/A· v3
10.0 HIGH· v2
Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality, integrity, and availability via unknown vec...Show more
Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.Show less
1Juniper
1Screenos
May 6, 2026
Apr 15, 2014
N/A· v4
N/A· v3
7.8 HIGH· v2
Juniper ScreenOS 6.3 and earlier allows remote attackers to cause a denial of service (crash and restart or failover) via a malformed SSL/TLS packet.
1Juniper
1Junos
May 6, 2026
Apr 14, 2014
N/A· v4
N/A· v3
7.1 HIGH· v2
The Enhanced Web Filtering (EWF) in Juniper Junos before 10.4R15, 11.4 before 11.4R9, 12.1 before 12.1R7, 12.1X44 before 12.1X44-D20, 12.1X45 before 12.1X45-D10, and 12.1X46 before 12.1X46-D10, as used in the SRX Series...Show more
The Enhanced Web Filtering (EWF) in Juniper Junos before 10.4R15, 11.4 before 11.4R9, 12.1 before 12.1R7, 12.1X44 before 12.1X44-D20, 12.1X45 before 12.1X45-D10, and 12.1X46 before 12.1X46-D10, as used in the SRX Series services gateways, allows remote attackers to cause a denial of service (flow daemon crash and restart) via a crafted URL.Show less
1Juniper
1Junos
May 6, 2026
Apr 14, 2014
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Juniper Junos before 11.4R11, 12.1 before 12.1R9, 12.2 before 12.2R7, 12.3R4 before 12.3R4-S3, 13.1 before 13.1R4, 13.2 before 13.2R2, and 13.3 before 13.3R1, as used in MX Series and T4000 routers, allows remote attacke...Show more
Juniper Junos before 11.4R11, 12.1 before 12.1R9, 12.2 before 12.2R7, 12.3R4 before 12.3R4-S3, 13.1 before 13.1R4, 13.2 before 13.2R2, and 13.3 before 13.3R1, as used in MX Series and T4000 routers, allows remote attackers to cause a denial of service (PFE restart) via a crafted IP packet to certain (1) Trio or (2) Cassis-based Packet Forwarding Engine (PFE) modules.Show less
1Juniper
1Junos
May 6, 2026
Apr 14, 2014
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in J-Web in Juniper Junos before 10.0S25, 10.4 before 10.4R10, 11.4 before 11.4R11, 12.1 before 12.1R9, 12.1X44 before 12.1X44-D30, 12.1X45 before 12.1X45-D20, 12.1X46 before 12.1...Show more
Cross-site scripting (XSS) vulnerability in J-Web in Juniper Junos before 10.0S25, 10.4 before 10.4R10, 11.4 before 11.4R11, 12.1 before 12.1R9, 12.1X44 before 12.1X44-D30, 12.1X45 before 12.1X45-D20, 12.1X46 before 12.1X46-D10, and 12.2 before 12.2R1 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters to index.php.Show less
1Juniper
1Junos
May 6, 2026
Apr 14, 2014
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in J-Web in Juniper Junos before 11.4R11, 11.4X27 before 11.4X27.62 (BBE), 12.1 before 12.1R9, 12.1X44 before 12.1X44-D35, 12.1X45 before 12.1X45-D25, 12.1X46 before 12.1X46-D20,...Show more
Cross-site scripting (XSS) vulnerability in J-Web in Juniper Junos before 11.4R11, 11.4X27 before 11.4X27.62 (BBE), 12.1 before 12.1R9, 12.1X44 before 12.1X44-D35, 12.1X45 before 12.1X45-D25, 12.1X46 before 12.1X46-D20, 12.2 before 12.2R7, 12.3 before 12.3R6, 13.1 before 13.1R4, 13.2 before 13.2R3, and 13.3 before 13.3R1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.Show less
1Juniper
1Junos
May 6, 2026
Apr 14, 2014
N/A· v4
N/A· v3
7.1 HIGH· v2
Juniper Junos 13.2 before 13.2R3 and 13.3 before 13.3R1, when PIM is enabled, allows remote attackers to cause a denial of service (kernel panic and crash) via a large number of crafted IGMP packets.
1Juniper
8Junos
Srx100Srx110+5 more
May 6, 2026
Apr 14, 2014
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Unspecified vulnerability in Juniper Junos before 11.4R10-S1, before 11.4R11, 12.1X44 before 12.1X44-D26, 12.1X44 before 12.1X44-D30, 12.1X45 before 12.1X45-D20, and 12.1X46 before 12.1X46-D10, when Dynamic IPsec VPN is...Show more
Unspecified vulnerability in Juniper Junos before 11.4R10-S1, before 11.4R11, 12.1X44 before 12.1X44-D26, 12.1X44 before 12.1X44-D30, 12.1X45 before 12.1X45-D20, and 12.1X46 before 12.1X46-D10, when Dynamic IPsec VPN is configured, allows remote attackers to cause a denial of service (new Dynamic VPN connection failures and CPU and disk consumption) via unknown vectors.Show less
1Juniper
1Ive Os
May 6, 2026
Mar 14, 2014
N/A· v4
N/A· v3
7.2 HIGH· v2
Unspecified vulnerability in the Linux Network Connect client in Juniper Junos Pulse Secure Access Service (aka SSL VPN) with IVE OS before 7.1r18, 7.3 before 7.3r10, 7.4 before 7.4r8, and 8.0 before 8.0r1 allows local u...Show more
Unspecified vulnerability in the Linux Network Connect client in Juniper Junos Pulse Secure Access Service (aka SSL VPN) with IVE OS before 7.1r18, 7.3 before 7.3r10, 7.4 before 7.4r8, and 8.0 before 8.0r1 allows local users to gain privileges via unspecified vectors.Show less
1Juniper
1Ive Os
May 6, 2026
Mar 14, 2014
N/A· v4
N/A· v3
3.5 LOW· v2
Cross-site scripting (XSS) vulnerability in the Pulse Collaboration (Secure Meeting) user pages in Juniper Junos Pulse Secure Access Service (aka SSL VPN) with IVE OS before 7.1r18, 7.3 before 7.3r10, 7.4 before 7.4r8, a...Show more
Cross-site scripting (XSS) vulnerability in the Pulse Collaboration (Secure Meeting) user pages in Juniper Junos Pulse Secure Access Service (aka SSL VPN) with IVE OS before 7.1r18, 7.3 before 7.3r10, 7.4 before 7.4r8, and 8.0 before 8.0r1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.Show less