|
253011
|
9.8 |
CRITICAL
Network
|
juniper
|
contrail_service_orchestration
|
Juniper Networks Contrail Service Orchestrator versions prior to 4.0.0 use hardcoded cryptographic certificates and keys in some cases, which may allow network based attackers to gain unauthorized ac…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2018-0040
|
2024-11-21 12:37 |
2018-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253012
|
9.8 |
CRITICAL
Network
|
juniper
|
contrail_service_orchestration
|
Juniper Networks Contrail Service Orchestration releases prior to 4.0.0 have Grafana service enabled by default with hardcoded credentials. These credentials allow network based attackers unauthorize…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2018-0039
|
2024-11-21 12:37 |
2018-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253013
|
9.8 |
CRITICAL
Network
|
juniper
|
contrail_service_orchestration
|
Juniper Networks Contrail Service Orchestration releases prior to 3.3.0 have Cassandra service enabled by default with hardcoded credentials. These credentials allow network based attackers unauthori…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2018-0038
|
2024-11-21 12:37 |
2018-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253014
|
5.9 |
MEDIUM
Network
|
juniper
|
junos
|
Receipt of a crafted or malformed RSVP PATH message may cause the routing protocol daemon (RPD) to hang or crash. When RPD is unavailable, routing updates cannot be processed which can lead to an ext…
|
CWE-20
Improper Input Validation
|
CVE-2018-0027
|
2024-11-21 12:37 |
2018-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253015
|
9.8 |
CRITICAL
Network
|
juniper
|
junos
|
Junos OS routing protocol daemon (RPD) process may crash and restart or may lead to remote code execution while processing specific BGP NOTIFICATION messages. By continuously sending crafted BGP NOTI…
|
CWE-20
Improper Input Validation
|
CVE-2018-0037
|
2024-11-21 12:37 |
2018-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253016
|
9.8 |
CRITICAL
Network
|
juniper
|
junos
|
QFX5200 and QFX10002 devices that have been shipped with Junos OS 15.1X53-D21, 15.1X53-D30, 15.1X53-D31, 15.1X53-D32, 15.1X53-D33 and 15.1X53-D60 or have been upgraded to these releases using the .bi…
|
NVD-CWE-noinfo
|
CVE-2018-0035
|
2024-11-21 12:37 |
2018-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253017
|
5.9 |
MEDIUM
Network
|
juniper
|
junos
|
A Denial of Service vulnerability exists in the Juniper Networks Junos OS JDHCPD daemon which allows an attacker to core the JDHCPD daemon by sending a crafted IPv6 packet to the system. This issue i…
|
CWE-20
Improper Input Validation
|
CVE-2018-0034
|
2024-11-21 12:37 |
2018-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253018
|
7.5 |
HIGH
Network
|
juniper
|
junos
|
The receipt of a crafted BGP UPDATE can lead to a routing process daemon (RPD) crash and restart. Repeated receipt of the same crafted BGP UPDATE can result in an extended denial of service condition…
|
CWE-20
Improper Input Validation
|
CVE-2018-0032
|
2024-11-21 12:37 |
2018-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253019
|
5.9 |
MEDIUM
Network
|
juniper
|
junos
|
Receipt of specially crafted UDP/IP packets over MPLS may be able to bypass a stateless firewall filter. The crafted UDP packets must be encapsulated and meet a very specific packet format to be clas…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2018-0031
|
2024-11-21 12:37 |
2018-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253020
|
7.5 |
HIGH
Network
|
juniper
|
junos
|
Receipt of a specific MPLS packet may cause MPC7/8/9, PTX-FPC3 (FPC-P1, FPC-P2) line cards or PTX1K to crash and restart. By continuously sending specific MPLS packets, an attacker can repeatedly cra…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2018-0030
|
2024-11-21 12:37 |
2018-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|