Known vulnerabilities in Junos OS 21.4R3-S6

Software: Junos OS
Version: 21.4R3-S6
Software CPE: cpe:2.3:o:juniper_networks:juniper_junos_os:*:*:*:*:*:*:*:*
Total vulnerabilities: 50
Public exploits: 6
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Junos OS version 21.4R3-S6 Junos OS 21.4R3-S6 is affected by 50 vulnerabilities: 1 critical, 7 high, 33 medium, 9 low Critical High Medium Low

Vulnerabilities (50)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU130698 - Improper Check for Unusual or Exceptional Conditions
CVE-2026-33790
CWE-754 Medium
No
No
21.2R3-S10, 21.4R3-S12, 22.4R3-S9, 23.2R2-S6, 23.4R2-S7, 24.2R2-S3, 24.4R2-S3, 25.2R1-S2, 25.2R2, 25.4R1 08.05.2026 SB2026050823
#VU105679 - Permissions, Privileges, and Access Controls
CVE-2025-21590
CWE-264 High
No
Exploited
21.2R3-S9, 21.4R3-S10, 22.2R3-S6, 22.4R3-S6, 23.2R2-S3, 23.4R2-S4, 24.2R1-S2, 24.2R2, 24.4R1 12.03.2025 SB2025031279
#VU102533 - Out-of-bounds read
CVE-2025-21600
CWE-125 Medium
No
No
21.4R3-S9, 22.2R3-S5, 22.3R3-S4, 22.4R3-S5, 23.2R2-S3, 23.4R2-S3, 24.2R1-S2, 24.2R2, 24.4R1 10.01.2025 SB2025011032
#VU102532 - Improper Check or Handling of Exceptional Conditions
CVE-2025-21602
CWE-703 Medium
No
No
21.4R3-S9, 22.2R3-S5, 22.3R3-S4, 22.4R3-S5, 23.2R2-S3, 23.4R2-S3, 24.2R1-S2, 24.2R2, 24.4R1 10.01.2025 SB2025011027
#VU102523 - Exposure of sensitive information to an unauthorized actor
CVE-2025-21592
CWE-200 Low
No
No
21.4R3-S8, 22.2R3-S5, 22.3R3-S3, 22.4R3-S2, 23.2R2-S1, 23.4R2, 24.2R1 10.01.2025 SB2025011009
#VU102521 - Improper control of a resource through its lifetime
CVE-2025-21593
CWE-664 Medium
No
No
21.2R3-S9, 21.4R3-S10, 22.2R3-S5, 22.3R3-S4, 22.4R3-S3, 23.2R2-S2, 23.4R2, 24.2R1 10.01.2025 SB2025011008
#VU102488 - Improper Handling of Exceptional Conditions
CVE-2025-21596
CWE-755 Low
No
No
21.4R3-S9, 22.2R3-S5, 22.3R3-S4, 22.4R3-S4, 23.2R2-S3, 23.4R2-S1, 24.2R1 09.01.2025 SB2025010933
#VU98413 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-47494
CWE-362 Low
No
No
21.4R3-S9, 22.2R3-S5, 22.3R3-S4, 22.4R3-S3, 23.2R2-S2, 23.4R2, 24.2R1 11.10.2024 SB2024101139
#VU98409 - Improper Validation of Consistency within Input
CVE-2024-39515
CWE-1288 Medium
No
No
21.4R3-S8, 22.2R3-S5 11.10.2024 SB2024101135
#VU98407 - Resource exhaustion
CVE-2024-47497
CWE-400 Medium
No
No
21.4R3-S7, 22.2R3-S4, 22.3R3-S3, 22.4R3-S2, 23.2R2-S1, 23.4R1-S2, 23.4R2, 24.2R1 11.10.2024 SB2024101134
#VU98403 - Improper Check for Unusual or Exceptional Conditions
CVE-2024-47503
CWE-754 Medium
No
No
21.4R3-S9, 22.2R3-S5 11.10.2024 SB2024101130
#VU81728 - Resource exhaustion
CVE-2023-44487
CWE-400 High
Public exploit available
Exploited
21.4R3-S8, 22.2R3-S5, 22.3R3-S3, 22.4R3-S4, 23.2R2-S2, 23.4R2-S1, 24.2R1 10.10.2023 SB2023101023
SB2023101024
SB2023101037
and 650 more
#VU76699 - Integer overflow
CVE-2017-20005
CWE-190 High
No
No
21.4R3-S8, 22.2R3-S5, 22.3R3-S3, 22.4R3-S4, 23.2R2-S2, 23.4R2-S1, 24.2R1 31.05.2023 SB2021060735
SB2024080137
SB2024080138
and 2 more
#VU68495 - Out-of-bounds read
CVE-2022-41742
CWE-125 Medium
No
No
21.4R3-S8, 22.2R3-S5, 22.3R3-S3, 22.4R3-S4, 23.2R2-S2, 23.4R2-S1, 24.2R1 19.10.2022 SB2022101941
SB2022111503
SB2022111601
and 34 more
#VU56737 - Resource exhaustion
CVE-2016-0747
CWE-400 High
No
No
21.4R3-S8, 22.2R3-S5, 22.3R3-S3, 22.4R3-S4, 23.2R2-S2, 23.4R2-S1, 24.2R1 21.09.2021 SB2016021501
SB2024080137
SB2024080138
and 7 more
#VU56736 - Use After Free
CVE-2016-0746
CWE-416 High
No
No
21.4R3-S8, 22.2R3-S5, 22.3R3-S3, 22.4R3-S4, 23.2R2-S2, 23.4R2-S1, 24.2R1 21.09.2021 SB2016021501
SB2024080137
SB2024080138
and 7 more
#VU56735 - NULL Pointer Dereference
CVE-2016-0742
CWE-476 Medium
No
No
21.4R3-S8, 22.2R3-S5, 22.3R3-S3, 22.4R3-S4, 23.2R2-S2, 23.4R2-S1, 24.2R1 21.09.2021 SB2016021501
SB2024080137
SB2024080138
and 7 more
#VU24230 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2019-20372
CWE-444 Medium
Public exploit available
No
21.4R3-S8, 22.2R3-S5, 22.3R3-S3, 22.4R3-S4, 23.2R2-S2, 23.4R2-S1, 24.2R1 13.01.2020 SB2020011323
SB2020011324
SB2020021002
and 10 more
#VU7410 - Integer overflow
CVE-2017-7529
CWE-190 Medium
Public exploit available
No
21.4R3-S8, 22.2R3-S5, 22.3R3-S3, 22.4R3-S4, 23.2R2-S2, 23.4R2-S1, 24.2R1 11.07.2017 SB2017071109
SB2017071214
SB2017071305
and 12 more
#VU25 - Inclusion of Functionality from Untrusted Control Sphere
CVE-2016-4450
CWE-829 Medium
No
No
21.4R3-S8, 22.2R3-S5, 22.3R3-S3, 22.4R3-S4, 23.2R2-S2, 23.4R2-S1, 24.2R1 24.06.2016 SB2016053101
SB2016060202
SB2016060102
and 14 more


Showing elements 1 - 20 out of 50