Known vulnerabilities in Junos OS 20.1R1-S3

Software: Junos OS
Version: 20.1R1-S3
Software CPE: cpe:2.3:o:juniper_networks:juniper_junos_os:*:*:*:*:*:*:*:*
Total vulnerabilities: 116
Public exploits: 4
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Junos OS version 20.1R1-S3 Junos OS 20.1R1-S3 is affected by 116 vulnerabilities: 6 high, 71 medium, 39 low Critical High Medium Low

Vulnerabilities (116)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU82515 - Improper Control of Filename for Include/Require Statement in PHP Program
CVE-2022-22246
CWE-98 Medium
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82514 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-22245
CWE-22 Low
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82513 - Improper Neutralization of Data within XPath Expressions
CVE-2022-22244
CWE-643 Medium
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82512 - Improper Neutralization of Data within XPath Expressions
CVE-2022-22243
CWE-643 Low
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82511 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-22242
CWE-79 Low
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82510 - Improper input validation
CVE-2022-22241
CWE-20 High
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU81668 - Resource Management Errors
CVE-2022-22234
CWE-399 Low
No
No
18.4R3-S11, 19.1R3-S9, 19.2R1-S9, 19.2R3-S5, 19.3R3-S6, 19.4R2-S7, 19.4R3-S8, 20.1R3-S4, 20.2R3-S4, 20.3R3-S4, 20.4R3-S3, 21.1R3-S1, 21.2R3, 21.3R2, 21.4R2, 22.1R1 06.10.2023 SB2022101272
#VU80111 - Improper input validation
CVE-2023-4481
CWE-20 Medium
No
No
- 29.08.2023 SB2023082953
#VU75136 - Uncontrolled Memory Allocation
CVE-2023-28968
CWE-789 Medium
No
No
19.4R3-S11, 20.2R3-S7, 20.4R3-S6, 21.1R3-S5, 21.2R3-S4, 21.3R3-S3, 21.4R3-S3, 22.1R3-S1, 22.2R2-S1, 22.2R3, 22.3R1-S2, 22.3R2, 22.4R1 14.04.2023 SB2023041449
#VU75121 - Improper Handling of Length Parameter Inconsistency
CVE-2023-28964
CWE-130 Medium
No
No
18.1R3-S11, 18.2R3-S6, 18.3R3-S4, 18.4R3-S6, 19.1R3-S4, 19.2R3-S1, 19.3R3-S1, 19.4R3, 20.1R2, 20.2R2, 20.3R1-S1, 20.3R2, 20.4R1 14.04.2023 SB2023041441
#VU75109 - Improper Check or Handling of Exceptional Conditions
CVE-2023-28970
CWE-703 Medium
No
No
21.2R3-S4, 21.4R3-S3, 22.1R3-S1, 22.2R2-S2, 22.2R3, 22.3R1-S2, 22.3R2, 22.4R1-S1, 22.4R2, 23.1R1 13.04.2023 SB2023041359
#VU82476 - Access of Uninitialized Pointer
CVE-2023-22398
CWE-824 Medium
No
No
15.1R7-S12, 19.1R3-S9, 19.2R1-S9, 19.2R3-S5, 19.3R3-S6, 19.4R2-S7, 19.4R3-S8, 20.1R3-S4, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R1-S1, 21.1R2, 21.2R1 11.01.2023 SB2023011174
#VU82471 - Incomplete cleanup
CVE-2023-22407
CWE-459 Medium
No
No
18.4R2-S7, 19.1R3-S2, 19.2R3, 19.3R3, 19.4R3, 20.1R2, 20.2R2, 20.3R1 11.01.2023 SB2023011169
#VU68578 - Missing release of memory after effective lifetime
CVE-2022-22226
CWE-401 Medium
No
No
17.3R3-S12, 17.4R2-S13, 17.4R3-S5, 18.1R3-S13, 18.2R3-S8, 18.3R3-S5, 18.4R1-S8, 18.4R2-S6, 18.4R3-S6, 19.1R3-S4, 19.2R1-S7, 19.2R3-S1, 19.3R2-S6, 19.3R3-S1, 19.4R1-S4, 19.4R2-S4, 19.4R3-S1, 20.1R2, 20.2R2-S3, 20.2R3, 20.3R2, 20.4R1 21.10.2022 SB2022102129
#VU68361 - Improper Handling of Exceptional Conditions
CVE-2022-22238
CWE-755 Medium
No
No
19.4R3-S8, 20.1R3-S2, 20.2R3-S3, 20.3R3-S2, 20.4R3-S1, 21.1R3, 21.2R1-S2, 21.2R3, 21.3R2, 21.4R1 17.10.2022 SB2022101725
#VU68277 - Improper input validation
CVE-2022-22223
CWE-20 Medium
No
No
15.1R7-S11, 18.4R2-S10, 18.4R3-S10, 19.1R3-S8, 19.2R3-S4, 19.3R3-S5, 19.4R2-S6, 19.4R3-S7, 20.1R3-S3, 20.2R3-S3, 20.3R3-S2, 20.4R3-S4, 21.1R3, 21.2R3-S3, 21.3R3-S1, 21.4R1 12.10.2022 SB2022101265
#VU68276 - Improper Handling of Exceptional Conditions
CVE-2022-22224
CWE-755 Medium
No
No
19.1R3-S9, 19.2R3-S5, 19.3R3-S3, 19.4R3-S9, 20.1R3, 20.2R3-S1, 20.3R3, 20.4R3, 21.1R2, 21.2R1 12.10.2022 SB2022101264
#VU68275 - Improper input validation
CVE-2022-22201
CWE-20 Medium
No
No
19.4R2-S6, 19.4R3-S7, 20.1R3-S3, 20.2R3-S4, 20.3R3-S3, 20.4R3-S2, 21.1R3, 21.2R3, 21.3R1-S2, 21.3R2, 21.4R1 12.10.2022 SB2022101263
#VU63627 - Memory corruption
CVE-2021-36690
CWE-119 Low
No
No
19.3R3-S6, 19.4R2-S6, 19.4R3-S8, 20.1R3-S4, 20.2R3-S4, 20.3R3-S3 25.05.2022 SB2022050533
SB2022071831
SB2022092034
and 16 more
#VU61391 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-0778
CWE-835 Medium
Public exploit available
No
18.4R2-S10, 18.4R3-S10, 19.1R3-S7, 19.1R3-S9, 19.2R1-S8, 19.2R3-S4, 19.3R3-S4, 19.3R3-S6, 19.4R2-S6, 19.4R2-S7, 19.4R3-S6, 19.4R3-S9, 20.1R3-S3, 20.1R3-S4, 20.2R3-S3, 20.2R3-S5, 20.3R3-S3, 20.3R3-S4, 20.4R3, 20.4R3-S4, 21.1R2, 21.1R3-S3, 21.2R1, 21.2R3-S1, 21.3R3-S1, 21.4R2, 22.1R2, 22.2R1 15.03.2022 SB2022031520
SB2022031522
SB2022031611
and 238 more


Showing elements 1 - 20 out of 116