CVE-2018-0043 is a vulnerability in Juniper Networks Junos OS, affecting various versions across SRX, QFX, EX, QFabric, and NFX Series devices. It allows an attacker within the MPLS domain to send specific MPLS packets, causing the routing protocol daemon (RPD) process to crash and restart, leading to a sustained Denial of Service, or potentially remote code execution. This vulnerability is rated 8.8 HIGH on the CVSS scale, indicating a severe risk. The attack vector is adjacent network, with low attack complexity, requiring no user interaction or privileges. Successful exploitation can result in high confidentiality, integrity, and availability impacts. There is currently no evidence of active exploitation, and no public exploit code (Metasploit, Nuclei, ExploitDB) is available. Community discussion and media coverage for this CVE are minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
12.1x46CPE matchmatch criteria | cpe:2.3:o:juniper:junos:12.1x46:*:*:*:*:*:*:* | ||
12.1x46CPE matchmatch criteria | cpe:2.3:o:juniper:junos:12.1x46:d10:*:*:*:*:*:* | ||
12.1x46CPE matchmatch criteria | cpe:2.3:o:juniper:junos:12.1x46:d15:*:*:*:*:*:* | ||
12.1x46CPE matchmatch criteria | cpe:2.3:o:juniper:junos:12.1x46:d20:*:*:*:*:*:* | ||
12.1x46CPE matchmatch criteria | cpe:2.3:o:juniper:junos:12.1x46:d25:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.2 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.