Known vulnerabilities in Junos OS Evolved 24.2R1-EVO
Vendor:
Juniper Networks, Inc.
Software:
Junos OS Evolved
Version:
24.2R1-EVO
Software CPE:
cpe:2.3:o:juniper_networks:junos_os_evolved:*:*:*:*:*:*:*:*
Website:
https://www.juniper.net/us/en/
Total vulnerabilities:
13
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Vulnerabilities by Severity
24.4R2-S4-EVO
20.2R1-S1-EVO
25.2R2-S1-EVO
23.2R2-S7-EVO
24.2R2-S5-EVO
23.4R2-S8-EVO
25.4R1-S2-EVO
26.2R1-EVO
25.4R2-EVO
25.4R1-S1-EVO
24.2R2-S4-EVO
24.4R2-S3-EVO
25.2R1-S2-EVO
24.1R2-EVO
21.4R3-S12-EVO
25.2R2-EVO
22.4R3-S9-EVO
23.2R2-S6-EVO
23.4R2-S7-EVO
25.4R1-EVO
24.4R2-S2-EVO
23.4R2-S6-EVO
24.2R2-S3-EVO
23.2R2-S5-EVO
22.4R3-S8-EVO
24.4R1-S1-EVO
25.2R1-S1-EVO
24.2R2-S2-EVO
25.1R1-EVO
24.4R2-EVO
23.4R2-S5-EVO
23.2R2-S4-EVO
22.2R3-S7-EVO
25.2R1-EVO
24.4R1-S3-EVO
24.2R2-S1-EVO
24.4R2-S1-EVO
22.4R3-S7-EVO
24.4R1-S2-EVO
22.2R3-S6-EVO
23.4R2-S4-EVO
22.4R3-S6-EVO
21.4R3-S10-EVO
21.2R3-S9-EVO
24.2R1-S1-EVO
22.3R3-S4-EVO
24.4R1-EVO
24.2R2-EVO
24.2R1-S2-EVO
23.4R2-S3-EVO
23.2R2-S3-EVO
22.4R3-S5-EVO
22.2R3-S5-EVO
21.4R3-S9-EVO
22.4R3-S4-EVO
23.2R2-S2-EVO
23.4R2-S2-EVO
23.4R2-S1-EVO
22.4R3-S3-EVO
21.4R3-S8-EVO
24.2R1-EVO
22.1R3-S6-EVO
23.4R1-S2-EVO
23.2R2-S1-EVO
22.4R3-S2-EVO
21.4R3-S7-EVO
23.4R1-S1-EVO
22.3R3-S3-EVO
22.2R3-S4-EVO
21.2R3-S8-EVO
23.4R1-EVO
24.1R1-EVO
23.4R2-EVO
22.4R3-S1-EVO
20.4R3-S10-EVO
19.4R3-S13-EVO
22.3R3-S2-EVO
21.2R3-S7-EVO
22.1R3-S5-EVO
21.4R3-S6-EVO
23.2R1-S2-EVO
20.4R3-S9-EVO
22.2R3-S3-EVO
20.2R3-S2-EVO
20.2R3-S1-EVO
20.2R3-EVO
19.4R3-EVO
19.3R3-EVO
19.2R3-EVO
21.4R3-S5-EVO
23.3R1-EVO
23.2R2-EVO
22.4R2-S2-EVO
23.3R3-EVO
23.2R1-S1-EVO
22.4R1-S1-EVO
22.3R2-S1-EVO
22.3R1-S2-EVO
22.2R3-S1-EVO
22.2R2-S2-EVO
22.2R1-S1-EVO
22.1R3-S2-EVO
22.1R3-S1-EVO
22.1R2-S1-EVO
22.1R1-S1-EVO
21.4R2-S2-EVO
21.3R3-S3-EVO
21.3R2-S2-EVO
21.3R2-S1-EVO
21.3R1-S1-EVO
21.2R3-S3-EVO
21.2R2-S2-EVO
21.2R1-S2-EVO
21.1R3-S3-EVO
21.1R1-S1-EVO
20.4R2-S1-EVO
20.4R1-S2-EVO
20.4R1-S1-EVO
18.3R1-EVO
21.4R3-S2-EVO
22.4R1-S2-EVO
22.3R3-EVO
21.4R3-S3-EVO
23.1R1-EVO
22.4R2-EVO
22.1R3-S3-EVO
21.3R3-S4-EVO
23.2R1-EVO
23.1R2-EVO
23.1R1-S1-EVO
22.4R3-EVO
22.4R2-S1-EVO
22.3R3-S1-EVO
22.3R2-S2-EVO
22.2R3-S2-EVO
22.1R3-S4-EVO
21.4R3-S4-EVO
21.3R3-S5-EVO
21.2R3-S6-EVO
20.4R3-S8-EVO
20.3-EVO
22.2-EVO
22.2R2-S1-EVO
22.1-EVO
21.3-EVO
22.2R3-EVO
21.4R3-S1-EVO
21.2R3-S5-EVO
21.1R3-S4-EVO
20.4R3-S7-EVO
20.2R2-EVO
20.1R3-EVO
21.3R3-S1-EVO
21.2R3-S4-EVO
20.4R3-S6-EVO
22.4R1-EVO
22.3R2-EVO
22.3R1-S1-EVO
21.4R2-S1-EVO
21.4R1-S2-EVO
21.2R2-S1-EVO
21.1R3-EVO
22.1R3-EVO
22.1R1-S2-EVO
22.3R1-EVO
22.2R2-EVO
21.3R3-S2-EVO
21.2R3-S1-EVO
20.4R3-S5-EVO
20.2R3-S3-EVO
21.4R1-S1-EVO
21.2R3-S2-EVO
21.1R3-S2-EVO
21.4R3-EVO
22.2R1-EVO
22.1R2-EVO
20.4R3-S3-EVO
20.4R3-S4-EVO
22.1R1-EVO
21.4R2-EVO
21.3R3-EVO
21.2R1-S1-EVO
21.1R3-S1-EVO
21.4R1-EVO
21.3R2-EVO
21.2R3-EVO
20.4R3-S2-EVO
20.1R1-EVO
21.2R2-EVO
20.4R3-EVO
20.4R2-S3-EVO
21.2-EVO
21.1-EVO
21.3R1-EVO
20.4R3-S1-EVO
21.1
20.4
20.3R2-S1-EVO
20.1R2-EVO
20.4R2-S2-EVO
21.2R1-EVO
21.1R2-EVO
21.1R1-EVO
20.4R2-EVO
20.3R1-EVO
20.1R2-S4-EVO
20.3
20.2
20.1
19.4
20.2R2-S1-EVO
20.1R2-S3-EVO
19.4R2-S3-EVO
19.1R1-EVO
20.3R1-S2-EVO
20.1R1-S4-EVO
19.3R2-S5-EVO
20.1R2-S1-EVO
20.1R1-S2-EVO
19.4R2-S2-EVO
20.4R1-EVO
20.3R2-EVO
20.3R1-S1-EVO
-
20.2R1-EVO
18.4R1-EVO
Vulnerabilities (13)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU130704 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2026-21919 |
CWE-362 | Low | 23.4R2-S5-EVO, 24.2R2-S1-EVO, 24.4R1-S3-EVO, 24.4R2-EVO, 25.2R1-EVO | 08.05.2026 |
SB2026050828 |
||
| #VU130702 - Command injection CVE-2026-33791 |
CWE-77 | Low | 22.4R3-S8-EVO, 23.2R2-S5-EVO, 23.4R2-S7-EVO, 24.2R2-S2-EVO, 24.4R2-EVO, 25.2R1-S1-EVO, 25.2R2-EVO, 25.4R1-EVO | 08.05.2026 |
SB2026050826 |
||
| #VU130697 - Execution with Unnecessary Privileges CVE-2026-33793 |
CWE-250 | Low | 22.4R3-S7-EVO, 23.2R2-S4-EVO, 23.4R2-S6-EVO, 24.2R2-EVO, 24.4R1-S1-EVO, 24.4R2-EVO, 25.2R1-EVO | 08.05.2026 |
SB2026050824 |
||
| #VU130696 - Missing Authorization CVE-2026-33776 |
CWE-862 | Low | 23.2R2-S6-EVO, 23.4R2-S6-EVO, 24.2R2-S4-EVO, 24.4R2-S1-EVO, 25.2R2-EVO, 25.4R1-EVO | 08.05.2026 |
SB2026050820 |
||
| #VU130694 - Missing release of memory after effective lifetime CVE-2026-33780 |
CWE-401 | Medium | 22.4R3-S5-EVO, 23.2R2-S3-EVO, 23.4R2-S4-EVO, 24.2R2-EVO, 24.4R1-EVO | 08.05.2026 |
SB2026050819 |
||
| #VU130689 - Stack-based buffer overflow CVE-2025-59969 |
CWE-121 | Low | 22.4R3-S8-EVO, 23.2R2-S5-EVO, 23.4R2-EVO, 24.2R2-EVO, 24.4R2-EVO, 25.2R1-EVO | 08.05.2026 |
SB2026050813 |
||
| #VU102533 - Out-of-bounds read CVE-2025-21600 |
CWE-125 | Medium | 21.4R3-S9-EVO, 22.2R3-S5-EVO, 22.3R3-S4-EVO, 22.4R3-S5-EVO, 23.2R2-S3-EVO, 23.4R2-S2-EVO, 24.2R1-S2-EVO, 24.2R2-EVO, 24.4R1-EVO | 10.01.2025 |
SB2025011032 |
||
| #VU102532 - Improper Check or Handling of Exceptional Conditions CVE-2025-21602 |
CWE-703 | Medium | 21.4R3-S9-EVO, 22.2R3-S5-EVO, 22.3R3-S4-EVO, 22.4R3-S5-EVO, 23.2R2-S3-EVO, 23.4R2-S3-EVO, 24.2R1-S2-EVO, 24.2R2-EVO, 24.4R1-EVO | 10.01.2025 |
SB2025011027 |
||
| #VU102530 - Out-of-bounds read CVE-2025-21598 |
CWE-125 | Medium | 21.4R3-S9-EVO, 22.2R3-S5-EVO, 22.3R3-S4-EVO, 22.4R3-S5-EVO, 23.2R2-S2-EVO, 23.4R2-S1-EVO, 24.2R1-S2-EVO, 24.2R2-EVO, 24.4R1-EVO | 10.01.2025 |
SB2025011026 |
||
| #VU102493 - Missing Release of Resource after Effective Lifetime CVE-2025-21599 |
CWE-772 | Medium | 22.4R3-S5-EVO, 23.2R2-S2-EVO, 23.4R2-S2-EVO, 24.2R1-S2-EVO, 24.2R2-EVO, 24.4R1-EVO | 09.01.2025 |
SB2025010941 |
||
| #VU93515 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2006-5051 |
CWE-362 | Critical | 24.2R1-S2-EVO, 24.2R2-EVO, 24.4R1-EVO | 01.07.2024 |
SB2006092801 SB2024071109 SB2024071110 and 5 more |
||
| #VU93514 - Exposure of sensitive information to an unauthorized actor CVE-2024-39894 |
CWE-200 | Low | 24.2R1-S2-EVO, 24.2R2-EVO, 24.4R1-EVO | 01.07.2024 |
SB2024070144 SB2024070956 SB2024071076 and 7 more |
||
| #VU93513 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2024-6387 |
CWE-362 | High | 24.2R1-S2-EVO, 24.2R2-EVO, 24.4R1-EVO | 01.07.2024 |
SB2024070144 SB2024070145 SB2024070152 and 89 more |