Known vulnerabilities in Junos OS 19.2R3-S3

Software: Junos OS
Version: 19.2R3-S3
Software CPE: cpe:2.3:o:juniper_networks:juniper_junos_os:*:*:*:*:*:*:*:*
Total vulnerabilities: 34
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.2

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Junos OS version 19.2R3-S3 Junos OS 19.2R3-S3 is affected by 34 vulnerabilities: 1 high, 26 medium, 7 low Critical High Medium Low

Vulnerabilities (34)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU82514 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-22245
CWE-22 Low
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82513 - Improper Neutralization of Data within XPath Expressions
CVE-2022-22244
CWE-643 Medium
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82512 - Improper Neutralization of Data within XPath Expressions
CVE-2022-22243
CWE-643 Low
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82511 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-22242
CWE-79 Low
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82510 - Improper input validation
CVE-2022-22241
CWE-20 High
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU81667 - Improper input validation
CVE-2017-7653
CWE-20 Medium
No
No
19.1R3-S10, 19.2R3-S7, 19.3R3-S8, 19.4R3-S11, 20.2R3-S7, 20.3R3-S6, 20.4R3-S7, 21.1R3-S4, 21.2R3-S5, 21.3R3-S4, 21.4R3-S4, 22.1R3, 22.2R3, 22.3R2, 22.4R1 06.10.2023 SB2019032712
SB2023100601
SB2018101411
#VU81666 - Missing release of memory after effective lifetime
CVE-2017-7654
CWE-401 Medium
No
No
19.1R3-S10, 19.2R3-S7, 19.3R3-S8, 19.4R3-S11, 20.2R3-S7, 20.3R3-S6, 20.4R3-S7, 21.1R3-S4, 21.2R3-S5, 21.3R3-S4, 21.4R3-S4, 22.1R3, 22.2R3, 22.3R2, 22.4R1 06.10.2023 SB2019032712
SB2023100601
SB2018101411
#VU78283 - Improper input validation
CVE-2023-36848
CWE-20 Medium
No
No
19.1R3-S10, 19.2R3-S7, 19.3R3-S8, 19.4R3-S12, 20.2R3-S8, 20.4R3-S7, 21.1R3-S5, 21.2R3-S5, 21.3R3-S4, 21.4R3-S4, 22.1R3-S3, 22.2R3-S1, 22.3R3, 22.4R1-S2, 22.4R2, 23.1R1 16.07.2023 SB2023071611
#VU78282 - Improper input validation
CVE-2023-36850
CWE-20 Medium
No
No
19.1R3-S10, 19.2R3-S7, 19.4R3-S12, 20.2R3-S7, 20.4R3-S7, 21.1R3-S5, 21.2R3-S4, 21.3R3-S4, 21.4R3-S3, 22.1R3-S2, 22.2R3, 22.3R2, 22.3R3, 22.4R2, 23.1R1 16.07.2023 SB2023071610
#VU78274 - Improper Check for Unusual or Exceptional Conditions
CVE-2023-36832
CWE-754 Medium
No
No
19.1R3-S10, 19.2R3-S7, 19.3R3-S8, 19.4R3-S12, 20.2R3-S8, 20.4R3-S7, 21.1R3-S5, 21.2R3-S5, 21.3R3-S4, 21.4R3-S3, 22.1R3-S2, 22.2R3, 22.3R2-S1, 22.3R3, 22.4R1-S2, 22.4R2, 23.1R1 16.07.2023 SB2023071602
#VU75153 - Permissions, Privileges, and Access Controls
CVE-2023-28972
CWE-264 Low
No
No
19.2R3-S7, 19.3R3-S8, 19.4R3-S12, 20.4R3-S7, 21.1R3-S5, 21.2R3-S4, 21.3R3-S3, 21.4R3-S2, 22.1R3-S1, 22.2R2-S1, 22.2R3, 22.3R1-S2, 22.3R2, 22.4R1 17.04.2023 SB2023041707
#VU82484 - Out-of-bounds write
CVE-2023-22411
CWE-787 Medium
No
No
19.2R3-S6, 19.3R3-S6, 19.4R3-S9, 20.2R3-S5, 20.3R3-S4, 20.4R3-S3, 21.1R3, 21.2R3, 21.3R2, 21.4R2, 22.1R1 11.01.2023 SB2023011182
#VU68365 - Improper input validation
CVE-2022-22230
CWE-20 Medium
No
No
19.2R3-S6, 19.4R2-S8, 19.4R3-S9, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.2R3-S1, 21.3R3-S2, 21.4R2, 22.1R2, 22.3R1 17.10.2022 SB2022101728
#VU68278 - Improper control of a resource through its lifetime
CVE-2022-22249
CWE-664 Medium
No
No
15.1R7-S13, 19.1R3-S9, 19.2R3-S6, 19.3R3-S6, 19.4R2-S7, 19.4R3-S8, 20.2R3-S5, 20.3R3-S5, 20.4R3-S2, 21.1R3, 21.2R3, 21.3R2, 21.4R1 12.10.2022 SB2022101266
#VU68277 - Improper input validation
CVE-2022-22223
CWE-20 Medium
No
No
15.1R7-S11, 18.4R2-S10, 18.4R3-S10, 19.1R3-S8, 19.2R3-S4, 19.3R3-S5, 19.4R2-S6, 19.4R3-S7, 20.1R3-S3, 20.2R3-S3, 20.3R3-S2, 20.4R3-S4, 21.1R3, 21.2R3-S3, 21.3R3-S1, 21.4R1 12.10.2022 SB2022101265
#VU68276 - Improper Handling of Exceptional Conditions
CVE-2022-22224
CWE-755 Medium
No
No
19.1R3-S9, 19.2R3-S5, 19.3R3-S3, 19.4R3-S9, 20.1R3, 20.2R3-S1, 20.3R3, 20.4R3, 21.1R2, 21.2R1 12.10.2022 SB2022101264
#VU68274 - Improper Check or Handling of Exceptional Conditions
CVE-2022-22218
CWE-703 Medium
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R2-S7, 19.4R3-S9, 20.2R3-S5, 20.3R3-S4, 20.4R3-S4, 21.1R3-S1, 21.2R3, 21.3R2, 21.4R1-S2, 21.4R2, 22.1R1 12.10.2022 SB2022101262
#VU68272 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2022-22225
CWE-367 Medium
No
No
19.2R3-S6, 20.2R3-S4, 20.3R3-S3, 20.4R3-S4, 21.1R2, 21.2R2, 21.3R2, 21.4R1 12.10.2022 SB2022101260
#VU82505 - Improper control of a resource through its lifetime
CVE-2022-22250
CWE-664 Medium
No
No
19.2R3-S5, 19.3R3-S5, 19.4R2-S6, 19.4R3-S8, 20.2R3-S4, 20.3R3-S3, 20.4R3-S3, 21.1R3-S1, 21.2R3, 21.3R2, 21.4R1-S1, 21.4R2, 22.1R1 12.10.2022 SB2022101275
#VU18088 - NULL Pointer Dereference
CVE-2017-7655
CWE-476 Medium
No
No
19.1R3-S10, 19.2R3-S7, 19.3R3-S8, 19.4R3-S11, 20.2R3-S7, 20.3R3-S6, 20.4R3-S7, 21.1R3-S4, 21.2R3-S5, 21.3R3-S4, 21.4R3-S4, 22.1R3, 22.2R3, 22.3R2, 22.4R1 28.03.2019 SB2019032712
SB2023100601


Showing elements 1 - 20 out of 34