Known vulnerabilities in Junos OS 20.1R3-S2

Software: Junos OS
Version: 20.1R3-S2
Software CPE: cpe:2.3:o:juniper_networks:juniper_junos_os:*:*:*:*:*:*:*:*
Total vulnerabilities: 42
Public exploits: 3
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Junos OS version 20.1R3-S2 Junos OS 20.1R3-S2 is affected by 42 vulnerabilities: 4 high, 27 medium, 11 low Critical High Medium Low

Vulnerabilities (42)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU82515 - Improper Control of Filename for Include/Require Statement in PHP Program
CVE-2022-22246
CWE-98 Medium
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82514 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-22245
CWE-22 Low
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82513 - Improper Neutralization of Data within XPath Expressions
CVE-2022-22244
CWE-643 Medium
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82512 - Improper Neutralization of Data within XPath Expressions
CVE-2022-22243
CWE-643 Low
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82511 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-22242
CWE-79 Low
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82510 - Improper input validation
CVE-2022-22241
CWE-20 High
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU81668 - Resource Management Errors
CVE-2022-22234
CWE-399 Low
No
No
18.4R3-S11, 19.1R3-S9, 19.2R1-S9, 19.2R3-S5, 19.3R3-S6, 19.4R2-S7, 19.4R3-S8, 20.1R3-S4, 20.2R3-S4, 20.3R3-S4, 20.4R3-S3, 21.1R3-S1, 21.2R3, 21.3R2, 21.4R2, 22.1R1 06.10.2023 SB2022101272
#VU80111 - Improper input validation
CVE-2023-4481
CWE-20 Medium
No
No
- 29.08.2023 SB2023082953
#VU75136 - Uncontrolled Memory Allocation
CVE-2023-28968
CWE-789 Medium
No
No
19.4R3-S11, 20.2R3-S7, 20.4R3-S6, 21.1R3-S5, 21.2R3-S4, 21.3R3-S3, 21.4R3-S3, 22.1R3-S1, 22.2R2-S1, 22.2R3, 22.3R1-S2, 22.3R2, 22.4R1 14.04.2023 SB2023041449
#VU75109 - Improper Check or Handling of Exceptional Conditions
CVE-2023-28970
CWE-703 Medium
No
No
21.2R3-S4, 21.4R3-S3, 22.1R3-S1, 22.2R2-S2, 22.2R3, 22.3R1-S2, 22.3R2, 22.4R1-S1, 22.4R2, 23.1R1 13.04.2023 SB2023041359
#VU82476 - Access of Uninitialized Pointer
CVE-2023-22398
CWE-824 Medium
No
No
15.1R7-S12, 19.1R3-S9, 19.2R1-S9, 19.2R3-S5, 19.3R3-S6, 19.4R2-S7, 19.4R3-S8, 20.1R3-S4, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R1-S1, 21.1R2, 21.2R1 11.01.2023 SB2023011174
#VU68277 - Improper input validation
CVE-2022-22223
CWE-20 Medium
No
No
15.1R7-S11, 18.4R2-S10, 18.4R3-S10, 19.1R3-S8, 19.2R3-S4, 19.3R3-S5, 19.4R2-S6, 19.4R3-S7, 20.1R3-S3, 20.2R3-S3, 20.3R3-S2, 20.4R3-S4, 21.1R3, 21.2R3-S3, 21.3R3-S1, 21.4R1 12.10.2022 SB2022101265
#VU68275 - Improper input validation
CVE-2022-22201
CWE-20 Medium
No
No
19.4R2-S6, 19.4R3-S7, 20.1R3-S3, 20.2R3-S4, 20.3R3-S3, 20.4R3-S2, 21.1R3, 21.2R3, 21.3R1-S2, 21.3R2, 21.4R1 12.10.2022 SB2022101263
#VU61391 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-0778
CWE-835 Medium
Public exploit available
No
18.4R2-S10, 18.4R3-S10, 19.1R3-S7, 19.1R3-S9, 19.2R1-S8, 19.2R3-S4, 19.3R3-S4, 19.3R3-S6, 19.4R2-S6, 19.4R2-S7, 19.4R3-S6, 19.4R3-S9, 20.1R3-S3, 20.1R3-S4, 20.2R3-S3, 20.2R3-S5, 20.3R3-S3, 20.3R3-S4, 20.4R3, 20.4R3-S4, 21.1R2, 21.1R3-S3, 21.2R1, 21.2R3-S1, 21.3R3-S1, 21.4R2, 22.1R2, 22.2R1 15.03.2022 SB2022031520
SB2022031522
SB2022031611
and 238 more
#VU34079 - Permissions, Privileges, and Access Controls
CVE-2020-13631
CWE-264 Low
No
No
19.3R3-S6, 19.4R2-S6, 19.4R3-S8, 20.1R3-S4, 20.2R3-S4, 20.3R3-S3 06.08.2020 SB2020080601
SB2020080704
SB2020072756
and 22 more
#VU34077 - Use After Free
CVE-2020-13630
CWE-416 High
No
No
19.3R3-S6, 19.4R2-S6, 19.4R3-S8, 20.1R3-S4, 20.2R3-S4, 20.3R3-S3 06.08.2020 SB2020080601
SB2020080704
SB2020072756
and 21 more
#VU28227 - Integer overflow
CVE-2020-13434
CWE-190 Medium
No
No
19.3R3-S6, 19.4R2-S6, 19.4R3-S8, 20.1R3-S4, 20.2R3-S4, 20.3R3-S3 25.05.2020 SB2020052519
SB2020080704
SB2020052729
and 27 more
#VU28226 - Improper input validation
CVE-2020-13435
CWE-20 Medium
No
No
19.3R3-S6, 19.4R2-S6, 19.4R3-S8, 20.1R3-S4, 20.2R3-S4, 20.3R3-S3 25.05.2020 SB2020052519
SB2020080704
SB2020052730
and 26 more
#VU27023 - Improper input validation
CVE-2020-11655
CWE-20 Medium
No
No
19.3R3-S6, 19.4R2-S6, 19.4R3-S8, 20.1R3-S4, 20.2R3-S4, 20.3R3-S3 20.04.2020 SB2020042007
SB2020042008
SB2020080704
and 10 more
#VU25861 - NULL Pointer Dereference
CVE-2020-9327
CWE-476 Low
No
No
19.3R3-S6, 19.4R2-S6, 19.4R3-S8, 20.1R3-S4, 20.2R3-S4, 20.3R3-S3 10.03.2020 SB2020022121
SB2020031502
SB2020110913
and 15 more


Showing elements 1 - 20 out of 42