|
196091
|
9.8 |
CRITICAL
Network
|
juniper
|
junos
|
The use of multiple hard-coded cryptographic keys in cSRX Series software in Juniper Networks Junos OS allows an attacker to take control of any instance of a cSRX deployment through device managemen…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2021-0266
|
2024-11-21 14:42 |
2021-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196092
|
8.1 |
HIGH
Network
|
juniper
|
appformix
|
An unvalidated REST API in the AppFormix Agent of Juniper Networks AppFormix allows an unauthenticated remote attacker to execute commands as root on the host running the AppFormix Agent, when certai…
|
CWE-78
OS Command
|
CVE-2021-0265
|
2024-11-21 14:42 |
2021-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196093
|
10.0 |
CRITICAL
Network
|
juniper
|
junos
|
This issue is not applicable to NFX NextGen Software. On NFX Series devices the use of Hard-coded Credentials in Juniper Networks Junos OS allows an attacker to take over any instance of an NFX deplo…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2021-0248
|
2024-11-21 14:42 |
2021-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196094
|
7.5 |
HIGH
Network
|
juniper
|
junos
|
A vulnerability in Juniper Networks Junos OS ACX500 Series, ACX4000 Series, may allow an attacker to cause a Denial of Service (DoS) by sending a high rate of specific packets to the device, resultin…
|
NVD-CWE-noinfo
|
CVE-2021-0233
|
2024-11-21 14:42 |
2021-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196095
|
6.5 |
MEDIUM
Network
|
juniper
|
junos
|
A path traversal vulnerability in the Juniper Networks SRX and vSRX Series may allow an authenticated J-web user to read sensitive system files. This issue affects Juniper Networks Junos OS on SRX an…
|
CWE-22
Path Traversal
|
CVE-2021-0231
|
2024-11-21 14:42 |
2021-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196096
|
8.8 |
HIGH
Network
|
juniper
|
junos
|
A Cross-site Scripting (XSS) vulnerability in J-Web on Juniper Networks Junos OS allows an attacker to target another user's session thereby gaining access to the users session. The other user sessio…
|
CWE-79
Cross-site Scripting
|
CVE-2021-0275
|
2024-11-21 14:42 |
2021-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196097
|
5.3 |
MEDIUM
Network
|
juniper
|
junos junos_os_evolved
|
An always-incorrect control flow implementation in the implicit filter terms of Juniper Networks Junos OS and Junos OS Evolved on ACX5800, EX9200 Series, MX10000 Series, MX240, MX480, MX960 devices w…
|
CWE-670 CWE-835
Always-Incorrect Control Flow Implementation Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2021-0273
|
2024-11-21 14:42 |
2021-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196098
|
6.5 |
MEDIUM
Adjacent
|
juniper
|
junos
|
A kernel memory leak in QFX10002-32Q, QFX10002-60C, QFX10002-72Q, QFX10008, QFX10016 devices Flexible PIC Concentrators (FPCs) on Juniper Networks Junos OS allows an attacker to send genuine packets …
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2021-0272
|
2024-11-21 14:42 |
2021-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196099
|
6.5 |
MEDIUM
Adjacent
|
juniper
|
junos
|
A Double Free vulnerability in the software forwarding interface daemon (sfid) process of Juniper Networks Junos OS allows an adjacently-connected attacker to cause a Denial of Service (DoS) by sendi…
|
CWE-415
Double Free
|
CVE-2021-0271
|
2024-11-21 14:42 |
2021-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196100
|
5.9 |
MEDIUM
Network
|
juniper
|
junos
|
On PTX Series and QFX10k Series devices with the "inline-jflow" feature enabled, a use after free weakness in the Packet Forwarding Engine (PFE) microkernel architecture of Juniper Networks Junos OS …
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2021-0270
|
2024-11-21 14:42 |
2021-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|