Known vulnerabilities in Junos OS 20.4R2-S2 - page 8

Software: Junos OS
Version: 20.4R2-S2
Software CPE: cpe:2.3:o:juniper_networks:juniper_junos_os:*:*:*:*:*:*:*:*
Total vulnerabilities: 197
Public exploits: 8
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Junos OS version 20.4R2-S2 Junos OS 20.4R2-S2 is affected by 197 vulnerabilities: 19 high, 141 medium, 37 low Critical High Medium Low

Vulnerabilities (197)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU82515 - Improper Control of Filename for Include/Require Statement in PHP Program
CVE-2022-22246
CWE-98 Medium
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82514 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-22245
CWE-22 Low
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82513 - Improper Neutralization of Data within XPath Expressions
CVE-2022-22244
CWE-643 Medium
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82512 - Improper Neutralization of Data within XPath Expressions
CVE-2022-22243
CWE-643 Low
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82511 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-22242
CWE-79 Low
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82510 - Improper input validation
CVE-2022-22241
CWE-20 High
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU81668 - Resource Management Errors
CVE-2022-22234
CWE-399 Low
No
No
18.4R3-S11, 19.1R3-S9, 19.2R1-S9, 19.2R3-S5, 19.3R3-S6, 19.4R2-S7, 19.4R3-S8, 20.1R3-S4, 20.2R3-S4, 20.3R3-S4, 20.4R3-S3, 21.1R3-S1, 21.2R3, 21.3R2, 21.4R2, 22.1R1 06.10.2023 SB2022101272
#VU68272 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2022-22225
CWE-367 Medium
No
No
19.2R3-S6, 20.2R3-S4, 20.3R3-S3, 20.4R3-S4, 21.1R2, 21.2R2, 21.3R2, 21.4R1 12.10.2022 SB2022101260
#VU82505 - Improper control of a resource through its lifetime
CVE-2022-22250
CWE-664 Medium
No
No
19.2R3-S5, 19.3R3-S5, 19.4R2-S6, 19.4R3-S8, 20.2R3-S4, 20.3R3-S3, 20.4R3-S3, 21.1R3-S1, 21.2R3, 21.3R2, 21.4R1-S1, 21.4R2, 22.1R1 12.10.2022 SB2022101275
#VU82508 - Missing release of memory after effective lifetime
CVE-2022-22240
CWE-401 Low
No
No
19.4R3-S9, 20.2R3-S5, 20.3R3-S2, 20.4R3-S1, 21.1R3, 21.2R1-S2, 21.2R2-S1, 21.2R3, 21.3R2, 21.4R1 12.10.2022 SB2022101277
#VU82503 - Access of Uninitialized Pointer
CVE-2022-22236
CWE-824 Medium
No
No
20.4R3-S4, 21.1R3-S2, 21.2R3-S2, 21.3R2-S2, 21.3R3, 21.4R1-S2, 21.4R2, 21.4R3, 22.1R1-S1, 22.1R2, 22.2R1 12.10.2022 SB2022101273
#VU65402 - Improper Handling of Exceptional Conditions
CVE-2022-22202
CWE-755 Medium
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S6, 19.4R3-S8, 20.1R3-S4, 20.2R3-S5, 20.3R3-S4, 20.4R3-S4, 21.1R3-S2, 21.2R3-S1, 21.3R3, 21.4R2, 22.1R2, 22.2R1 18.07.2022 SB2022071830
#VU65372 - Resource exhaustion
CVE-2022-22215
CWE-400 Medium
No
No
19.1R3-S8, 19.2R3-S6, 19.3R3-S5, 19.4R2-S6, 19.4R3-S7, 20.2R3-S5, 20.3R3-S4, 20.4R3, 21.1R3, 21.2R2, 21.3R1 16.07.2022 SB2022071621
#VU65371 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-22221
CWE-78 Low
No
No
19.1R3-S9, 19.2R1-S9, 19.2R3-S5, 19.4R3-S8, 20.2R3-S4, 20.3R3-S3, 20.4R3-S2, 20.4R3-S3, 21.1R3-S1, 21.2R2-S2, 21.2R3, 21.3R2, 21.3R3, 21.4R1-S1, 21.4R2, 22.1R1 16.07.2022 SB2022071620
#VU65370 - Improper Check for Unusual or Exceptional Conditions
CVE-2022-22217
CWE-754 Medium
No
No
19.1R3-S9, 19.2R1-S9, 19.2R3-S5, 19.3R3-S6, 19.4R3-S8, 20.1R3-S4, 20.2R3-S4, 20.3R3-S2, 20.4R3-S2, 21.1R3, 21.2R2-S1, 21.2R3, 21.3R2, 21.4R1 16.07.2022 SB2022071619
#VU56064 - Out-of-bounds read
CVE-2021-3712
CWE-125 Medium
No
No
18.4R2-S10, 19.2R1-S9, 19.2R3-S5, 19.3R3-S5, 19.4R3-S7, 20.1R3-S3, 20.2R3-S4, 20.3R3-S2, 20.4R3-S1, 21.1R3-S1, 21.2R2-S1, 21.2R3, 21.3R2, 21.4R1 24.08.2021 SB2021082414
SB2021082508
SB2021082510
and 142 more
#VU50745 - Improper input validation
CVE-2021-23840
CWE-20 Medium
No
No
18.4R2-S10, 19.2R1-S9, 19.2R3-S5, 19.3R3-S5, 19.4R3-S7, 20.1R3-S3, 20.2R3-S4, 20.3R3-S2, 20.4R3-S1, 21.1R3-S1, 21.2R2-S1, 21.2R3, 21.3R2, 21.4R1 17.02.2021 SB2021021702
SB2021021817
SB2021022420
and 83 more
#VU50744 - Cryptographic Issues
CVE-2021-23839
CWE-310 Low
No
No
18.4R2-S10, 19.2R1-S9, 19.2R3-S5, 19.3R3-S5, 19.4R3-S7, 20.1R3-S3, 20.2R3-S4, 20.3R3-S2, 20.4R3-S1, 21.1R3-S1, 21.2R2-S1, 21.2R3, 21.3R2, 21.4R1 17.02.2021 SB2021021702
SB2021041501
SB2021041502
and 15 more
#VU48896 - NULL Pointer Dereference
CVE-2020-1971
CWE-476 Medium
Public exploit available
No
18.4R2-S10, 19.2R1-S9, 19.2R3-S5, 19.3R3-S5, 19.4R3-S7, 20.1R3-S3, 20.2R3-S4, 20.3R3-S2, 20.4R3-S1, 21.1R3-S1, 21.2R2-S1, 21.2R3, 21.3R2, 21.4R1 08.12.2020 SB2020120852
SB2020120903
SB2020120905
and 91 more
#VU46573 - Exposure of sensitive information to an unauthorized actor
CVE-2020-1968
CWE-200 Medium
No
No
18.4R2-S10, 19.2R1-S9, 19.2R3-S5, 19.3R3-S5, 19.4R3-S7, 20.1R3-S3, 20.2R3-S4, 20.3R3-S2, 20.4R3-S1, 21.1R3-S1, 21.2R2-S1, 21.2R3, 21.3R2, 21.4R1 10.09.2020 SB2020091011
SB2020121720
SB2021012078
and 22 more


Showing elements 141 - 160 out of 197