Known vulnerabilities in Junos OS Evolved 21.1R1-EVO
Vendor:
Juniper Networks, Inc.
Software:
Junos OS Evolved
Version:
21.1R1-EVO
Software CPE:
cpe:2.3:o:juniper_networks:junos_os_evolved:*:*:*:*:*:*:*:*
Website:
https://www.juniper.net/us/en/
Total vulnerabilities:
25
Public exploits:
3
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.2
Vulnerabilities by Severity
24.4R2-S4-EVO
20.2R1-S1-EVO
25.2R2-S1-EVO
23.2R2-S7-EVO
24.2R2-S5-EVO
23.4R2-S8-EVO
25.4R1-S2-EVO
26.2R1-EVO
25.4R2-EVO
25.4R1-S1-EVO
24.2R2-S4-EVO
24.4R2-S3-EVO
25.2R1-S2-EVO
24.1R2-EVO
21.4R3-S12-EVO
25.2R2-EVO
22.4R3-S9-EVO
23.2R2-S6-EVO
23.4R2-S7-EVO
25.4R1-EVO
24.4R2-S2-EVO
23.4R2-S6-EVO
24.2R2-S3-EVO
23.2R2-S5-EVO
22.4R3-S8-EVO
24.4R1-S1-EVO
25.2R1-S1-EVO
24.2R2-S2-EVO
25.1R1-EVO
24.4R2-EVO
23.4R2-S5-EVO
23.2R2-S4-EVO
22.2R3-S7-EVO
25.2R1-EVO
24.4R1-S3-EVO
24.2R2-S1-EVO
24.4R2-S1-EVO
22.4R3-S7-EVO
24.4R1-S2-EVO
22.2R3-S6-EVO
23.4R2-S4-EVO
22.4R3-S6-EVO
21.4R3-S10-EVO
21.2R3-S9-EVO
24.2R1-S1-EVO
22.3R3-S4-EVO
24.4R1-EVO
24.2R2-EVO
24.2R1-S2-EVO
23.4R2-S3-EVO
23.2R2-S3-EVO
22.4R3-S5-EVO
22.2R3-S5-EVO
21.4R3-S9-EVO
22.4R3-S4-EVO
23.2R2-S2-EVO
23.4R2-S2-EVO
23.4R2-S1-EVO
22.4R3-S3-EVO
21.4R3-S8-EVO
24.2R1-EVO
22.1R3-S6-EVO
23.4R1-S2-EVO
23.2R2-S1-EVO
22.4R3-S2-EVO
21.4R3-S7-EVO
23.4R1-S1-EVO
22.3R3-S3-EVO
22.2R3-S4-EVO
21.2R3-S8-EVO
23.4R1-EVO
24.1R1-EVO
23.4R2-EVO
22.4R3-S1-EVO
20.4R3-S10-EVO
19.4R3-S13-EVO
22.3R3-S2-EVO
21.2R3-S7-EVO
22.1R3-S5-EVO
21.4R3-S6-EVO
23.2R1-S2-EVO
20.4R3-S9-EVO
22.2R3-S3-EVO
20.2R3-S2-EVO
20.2R3-S1-EVO
20.2R3-EVO
19.4R3-EVO
19.3R3-EVO
19.2R3-EVO
21.4R3-S5-EVO
23.3R1-EVO
23.2R2-EVO
22.4R2-S2-EVO
23.3R3-EVO
23.2R1-S1-EVO
22.4R1-S1-EVO
22.3R2-S1-EVO
22.3R1-S2-EVO
22.2R3-S1-EVO
22.2R2-S2-EVO
22.2R1-S1-EVO
22.1R3-S2-EVO
22.1R3-S1-EVO
22.1R2-S1-EVO
22.1R1-S1-EVO
21.4R2-S2-EVO
21.3R3-S3-EVO
21.3R2-S2-EVO
21.3R2-S1-EVO
21.3R1-S1-EVO
21.2R3-S3-EVO
21.2R2-S2-EVO
21.2R1-S2-EVO
21.1R3-S3-EVO
21.1R1-S1-EVO
20.4R2-S1-EVO
20.4R1-S2-EVO
20.4R1-S1-EVO
18.3R1-EVO
21.4R3-S2-EVO
22.4R1-S2-EVO
22.3R3-EVO
21.4R3-S3-EVO
23.1R1-EVO
22.4R2-EVO
22.1R3-S3-EVO
21.3R3-S4-EVO
23.2R1-EVO
23.1R2-EVO
23.1R1-S1-EVO
22.4R3-EVO
22.4R2-S1-EVO
22.3R3-S1-EVO
22.3R2-S2-EVO
22.2R3-S2-EVO
22.1R3-S4-EVO
21.4R3-S4-EVO
21.3R3-S5-EVO
21.2R3-S6-EVO
20.4R3-S8-EVO
20.3-EVO
22.2-EVO
22.2R2-S1-EVO
22.1-EVO
21.3-EVO
22.2R3-EVO
21.4R3-S1-EVO
21.2R3-S5-EVO
21.1R3-S4-EVO
20.4R3-S7-EVO
20.2R2-EVO
20.1R3-EVO
21.3R3-S1-EVO
21.2R3-S4-EVO
20.4R3-S6-EVO
22.4R1-EVO
22.3R2-EVO
22.3R1-S1-EVO
21.4R2-S1-EVO
21.4R1-S2-EVO
21.2R2-S1-EVO
21.1R3-EVO
22.1R3-EVO
22.1R1-S2-EVO
22.3R1-EVO
22.2R2-EVO
21.3R3-S2-EVO
21.2R3-S1-EVO
20.4R3-S5-EVO
20.2R3-S3-EVO
21.4R1-S1-EVO
21.2R3-S2-EVO
21.1R3-S2-EVO
21.4R3-EVO
22.2R1-EVO
22.1R2-EVO
20.4R3-S3-EVO
20.4R3-S4-EVO
22.1R1-EVO
21.4R2-EVO
21.3R3-EVO
21.2R1-S1-EVO
21.1R3-S1-EVO
21.4R1-EVO
21.3R2-EVO
21.2R3-EVO
20.4R3-S2-EVO
20.1R1-EVO
21.2R2-EVO
20.4R3-EVO
20.4R2-S3-EVO
21.2-EVO
21.1-EVO
21.3R1-EVO
20.4R3-S1-EVO
21.1
20.4
20.3R2-S1-EVO
20.1R2-EVO
20.4R2-S2-EVO
21.2R1-EVO
21.1R2-EVO
21.1R1-EVO
20.4R2-EVO
20.3R1-EVO
20.1R2-S4-EVO
20.3
20.2
20.1
19.4
20.2R2-S1-EVO
20.1R2-S3-EVO
19.4R2-S3-EVO
19.1R1-EVO
20.3R1-S2-EVO
20.1R1-S4-EVO
19.3R2-S5-EVO
20.1R2-S1-EVO
20.1R1-S2-EVO
19.4R2-S2-EVO
20.4R1-EVO
20.3R2-EVO
20.3R1-S1-EVO
-
20.2R1-EVO
18.4R1-EVO
Vulnerabilities (25)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU102533 - Out-of-bounds read CVE-2025-21600 |
CWE-125 | Medium | 21.4R3-S9-EVO, 22.2R3-S5-EVO, 22.3R3-S4-EVO, 22.4R3-S5-EVO, 23.2R2-S3-EVO, 23.4R2-S2-EVO, 24.2R1-S2-EVO, 24.2R2-EVO, 24.4R1-EVO | 10.01.2025 |
SB2025011032 |
||
| #VU102532 - Improper Check or Handling of Exceptional Conditions CVE-2025-21602 |
CWE-703 | Medium | 21.4R3-S9-EVO, 22.2R3-S5-EVO, 22.3R3-S4-EVO, 22.4R3-S5-EVO, 23.2R2-S3-EVO, 23.4R2-S3-EVO, 24.2R1-S2-EVO, 24.2R2-EVO, 24.4R1-EVO | 10.01.2025 |
SB2025011027 |
||
| #VU102521 - Improper control of a resource through its lifetime CVE-2025-21593 |
CWE-664 | Medium | 21.2R3-S9-EVO, 21.4R3-S10-EVO, 22.2R3-S5-EVO, 22.3R3-S4-EVO, 22.4R3-S3-EVO, 23.2R2-S2-EVO, 23.4R2-EVO, 24.2R1-EVO | 10.01.2025 |
SB2025011008 |
||
| #VU82303 - Incorrect Permission Assignment for Critical Resource CVE-2023-44201 |
CWE-732 | Low | 20.4R3-S4-EVO, 21.1R3-S2-EVO, 21.2R3-S2-EVO, 21.4R2-S2-EVO, 21.4R3-EVO, 22.1R1-EVO | 23.10.2023 |
SB2023102335 |
||
| #VU80111 - Improper input validation CVE-2023-4481 |
CWE-20 | Medium | - | 29.08.2023 |
SB2023082953 |
||
| #VU75130 - Insecure Default Variable Initialization CVE-2023-28978 |
CWE-453 | Medium | 20.4R3-S7-EVO, 21.1R3-S4-EVO, 21.2R3-S5-EVO, 21.4R3-S1-EVO, 22.2R2-EVO, 22.3R1-EVO | 14.04.2023 |
SB2023041443 |
||
| #VU82476 - Access of Uninitialized Pointer CVE-2023-22398 |
CWE-824 | Medium | 20.4R3-S4-EVO, 21.1R2-EVO, 21.2R1-EVO | 11.01.2023 |
SB2023011174 |
||
| #VU68896 - Memory corruption CVE-2022-3786 |
CWE-119 | Medium | 20.1R1-EVO, 20.4R2-EVO, 20.4R3-S7-EVO, 20.4R3-S8-EVO, 21.1R2-EVO, 21.2R3-S5-EVO, 21.2R3-S6-EVO, 21.3R2-EVO, 21.3R3-S4-EVO, 21.3R3-S5-EVO, 21.4R1-EVO, 21.4R3-S4-EVO, 22.1R1-EVO, 22.1R3-S3-EVO, 22.1R3-EVO, 22.2R3-S2-EVO, 22.2R3-EVO, 22.3R2-S2-EVO, 22.3R2-EVO, 22.3R3-S1-EVO, 22.4R1-EVO, 22.4R2-S1-EVO, 22.4R2-EVO, 22.4R3-EVO, 23.1R1-EVO, 23.2R1-EVO | 01.11.2022 |
SB2022110132 SB2022110133 SB2022110144 and 44 more |
||
| #VU68895 - Memory corruption CVE-2022-3602 |
CWE-119 | High | 20.1R1-EVO, 20.4R2-EVO, 20.4R3-S7-EVO, 20.4R3-S8-EVO, 21.1R2-EVO, 21.2R3-S5-EVO, 21.2R3-S6-EVO, 21.3R2-EVO, 21.3R3-S4-EVO, 21.3R3-S5-EVO, 21.4R1-EVO, 21.4R3-S4-EVO, 22.1R1-EVO, 22.1R3-S3-EVO, 22.1R3-EVO, 22.2R3-S2-EVO, 22.2R3-EVO, 22.3R2-S2-EVO, 22.3R2-EVO, 22.3R3-S1-EVO, 22.4R1-EVO, 22.4R2-S1-EVO, 22.4R2-EVO, 22.4R3-EVO, 23.1R1-EVO, 23.2R1-EVO | 01.11.2022 |
SB2022110132 SB2022110133 SB2022110144 and 45 more |
||
| #VU68562 - Execution with Unnecessary Privileges CVE-2022-22239 |
CWE-250 | Low | 20.4R3-S5-EVO, 21.1R3-EVO, 21.2R2-S1-EVO, 21.2R3-EVO, 21.3R2-EVO, 21.4R1-EVO | 21.10.2022 |
SB2022102104 |
||
| #VU68369 - Time-of-check Time-of-use (TOCTOU) Race Condition CVE-2022-22220 |
CWE-367 | Medium | 20.4R2-EVO, 21.1R2-EVO, 21.2R1-EVO | 17.10.2022 |
SB2022101734 |
||
| #VU68365 - Improper input validation CVE-2022-22230 |
CWE-20 | Medium | 20.4R3-S5-EVO, 21.1R3-S2-EVO, 21.2R3-S1-EVO, 21.3R3-S2-EVO, 21.4R2-EVO, 22.1R2-EVO, 22.2R2-EVO, 22.3R1-EVO | 17.10.2022 |
SB2022101728 |
||
| #VU68364 - Use After Free CVE-2022-22208 |
CWE-416 | Medium | 20.4R3-S4-EVO, 21.1R3-S2-EVO, 21.2R3-EVO, 21.3R2-EVO, 21.4R1-EVO | 17.10.2022 |
SB2022101727 |
||
| #VU68328 - Improper Handling of Exceptional Conditions CVE-2022-22227 |
CWE-755 | Medium | 21.1R3-S2-EVO, 21.2R3-S2-EVO, 21.3R3-EVO, 21.4R1-S1-EVO, 21.4R2-EVO, 22.1R1-EVO | 14.10.2022 |
SB2022101439 |
||
| #VU68276 - Improper Handling of Exceptional Conditions CVE-2022-22224 |
CWE-755 | Medium | 20.4R3-S3-EVO, 21.1R2-EVO, 21.2R1-EVO | 12.10.2022 |
SB2022101264 |
||
| #VU65372 - Resource exhaustion CVE-2022-22215 |
CWE-400 | Medium | 20.4R3-EVO, 21.1R3-S1-EVO, 21.2R1-S1-EVO, 21.2R2-EVO, 21.3R1-EVO | 16.07.2022 |
SB2022071621 |
||
| #VU82497 - Improper input validation CVE-2022-22213 |
CWE-20 | Medium | 21.1R3-S1-EVO, 21.3R3-EVO, 21.4R1-S1-EVO, 21.4R2-EVO, 22.1R1-EVO | 13.07.2022 |
SB2022071360 |
||
| #VU82439 - Improper Access Control CVE-2022-22183 |
CWE-284 | Medium | 20.4R3-S2-EVO, 21.1R3-S1-EVO, 21.2R3-EVO, 21.3R2-EVO, 21.4R2-EVO, 22.1R1-EVO | 13.04.2022 |
SB2022041354 |
||
| #VU60245 - Improper Privilege Management CVE-2022-21699 |
CWE-269 | Low | 20.4R2-EVO, 21.1R2-EVO, 21.3R2-EVO, 21.4R3-S6-EVO, 22.1R3-S5-EVO, 22.2R3-S3-EVO, 23.2R2-EVO | 02.02.2022 |
SB2022020212 SB2022020214 SB2023031526 and 5 more |
||
| #VU4013 - Improper input validation CVE-2013-5211 |
CWE-20 | High | 20.1R1-EVO, 20.4R2-EVO, 20.4R3-S7-EVO, 20.4R3-S8-EVO, 21.1R2-EVO, 21.2R3-S5-EVO, 21.2R3-S6-EVO, 21.3R2-EVO, 21.3R3-S4-EVO, 21.3R3-S5-EVO, 21.4R1-EVO, 21.4R3-S4-EVO, 22.1R3-S3-EVO, 22.1R3-EVO, 22.2R3-S2-EVO, 22.2R3-EVO, 22.3R2-S2-EVO, 22.3R2-EVO, 22.3R3-S1-EVO, 22.4R1-EVO, 22.4R2-S1-EVO, 22.4R2-EVO, 22.4R3-EVO, 23.1R1-EVO, 23.2R1-EVO | 01.07.2016 |
SB2013061201 SB2014011601 SB2014021402 and 5 more |
Showing elements 1 - 20 out of 25