Known vulnerabilities in Junos OS 21.4R1-S2 - page 11

Software: Junos OS
Version: 21.4R1-S2
Software CPE: cpe:2.3:o:juniper_networks:juniper_junos_os:*:*:*:*:*:*:*:*
Total vulnerabilities: 218
Public exploits: 12
Known exploited (KEV): 8
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Junos OS version 21.4R1-S2 Junos OS 21.4R1-S2 is affected by 218 vulnerabilities: 1 critical, 26 high, 158 medium, 33 low Critical High Medium Low

Vulnerabilities (218)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU88976 - Exposure of sensitive information to an unauthorized actor
CVE-2020-1628
CWE-200 Medium
No
No
14.1X53-D53, 15.1X49-D200, 15.1X49-D210, 15.1R7-S6, 16.1R7-S7, 17.1R2-S11, 17.1R3-S2, 17.2R3-S3, 17.3R2-S5, 17.3R3-S7, 17.4R2-S9, 17.4R3, 18.1R3-S8, 18.2R3-S2, 18.3R2-S3, 18.3R3, 18.3R3-S1, 18.4R1-S5, 18.4R2-S3, 18.4R3, 19.1R1-S4, 19.1R2, 19.2R1-S4, 19.2R2, 19.3R1-S1, 19.3R2, 19.4R1, 20.4R3-S4, 21.4R1-S1, 21.4R2, 22.1R1 24.04.2024 SB2020040897
#VU82515 - Improper Control of Filename for Include/Require Statement in PHP Program
CVE-2022-22246
CWE-98 Medium
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82514 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-22245
CWE-22 Low
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82513 - Improper Neutralization of Data within XPath Expressions
CVE-2022-22244
CWE-643 Medium
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82512 - Improper Neutralization of Data within XPath Expressions
CVE-2022-22243
CWE-643 Low
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82511 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-22242
CWE-79 Low
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82510 - Improper input validation
CVE-2022-22241
CWE-20 High
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S7, 19.4R3-S9, 20.1R3-S5, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.3R3, 21.4R3, 22.1R2, 22.2R1 26.10.2023 SB2022101278
#VU82389 - Allocation of Resources Without Limits or Throttling
CVE-2023-22403
CWE-770 Medium
No
No
20.2R3-S7, 20.4R3-S4, 21.1R3-S3, 21.2R3-S1, 21.3R3, 21.4R3, 22.1R2, 22.2R1 25.10.2023 SB2023011167
#VU81668 - Resource Management Errors
CVE-2022-22234
CWE-399 Low
No
No
18.4R3-S11, 19.1R3-S9, 19.2R1-S9, 19.2R3-S5, 19.3R3-S6, 19.4R2-S7, 19.4R3-S8, 20.1R3-S4, 20.2R3-S4, 20.3R3-S4, 20.4R3-S3, 21.1R3-S1, 21.2R3, 21.3R2, 21.4R2, 22.1R1 06.10.2023 SB2022101272
#VU68564 - Improper Authentication
CVE-2022-22237
CWE-287 Medium
No
No
21.2R3-S1, 21.3R2-S2, 21.3R3, 21.4R2-S1, 21.4R3, 22.1R1-S1, 22.1R2, 22.2R1 21.10.2022 SB2022102108
#VU68370 - Improper input validation
CVE-2022-22199
CWE-20 Medium
No
No
21.3R3-S2, 21.4R2-S2, 21.4R3, 22.1R1-S2, 22.1R3, 22.2R2, 22.3R1 17.10.2022 SB2022101735
#VU68366 - Missing release of memory after effective lifetime
CVE-2022-22228
CWE-401 Medium
No
No
21.1R3-S2, 21.2R3-S1, 21.3R3, 21.4R2, 22.1R2, 22.2R1 17.10.2022 SB2022101729
#VU68365 - Improper input validation
CVE-2022-22230
CWE-20 Medium
No
No
19.2R3-S6, 19.4R2-S8, 19.4R3-S9, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S2, 21.2R3-S1, 21.3R3-S2, 21.4R2, 22.1R2, 22.3R1 17.10.2022 SB2022101728
#VU65402 - Improper Handling of Exceptional Conditions
CVE-2022-22202
CWE-755 Medium
No
No
19.1R3-S9, 19.2R3-S6, 19.3R3-S6, 19.4R3-S8, 20.1R3-S4, 20.2R3-S5, 20.3R3-S4, 20.4R3-S4, 21.1R3-S2, 21.2R3-S1, 21.3R3, 21.4R2, 22.1R2, 22.2R1 18.07.2022 SB2022071830
#VU82495 - Missing release of memory after effective lifetime
CVE-2022-22204
CWE-401 Medium
No
No
20.4R3-S2, 21.1R3-S2, 21.2R2-S2, 21.2R3, 21.3R2, 21.4R2, 22.1R1 13.07.2022 SB2022071358
#VU82496 - Buffer overflow
CVE-2022-22206
CWE-120 Medium
No
No
20.2R3-S4, 20.3R3-S3, 20.4R3-S3, 21.1R3-S1, 21.2R2-S2, 21.2R3, 21.3R2, 21.4R2, 22.1R1 13.07.2022 SB2022071359
#VU82465 - Improper Initialization
CVE-2022-22186
CWE-665 Medium
No
No
19.1R3-S8, 19.2R3-S5, 19.3R3-S5, 19.4R3-S7, 20.1R3-S3, 20.2R3-S4, 20.3R3-S3, 20.4R3-S2, 21.1R3-S1, 21.2R3, 21.3R2, 21.4R2, 22.1R1 13.04.2022 SB2022041362
#VU61422 - Reliance on Reverse DNS Resolution for a Security-Critical Action
CVE-2021-25220
CWE-350 Medium
No
No
19.4R2-S8, 19.4R3-S9, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S3, 21.2R3-S2, 21.3R3-S1, 21.4R2-S1, 21.4R3, 22.1R1-S2, 22.1R3, 22.2R1-S1, 22.2R2, 22.3R1 17.03.2022 SB2022031701
SB2022031719
SB2022031725
and 57 more


Showing elements 201 - 220 out of 218