CVE-2020-1665 impacts Juniper Networks MX Series and EX9200 Series devices with Trio-based Packet Forwarding Engines, where IPv6 Distributed Denial of Service (DDoS) protection may fail to activate under certain threshold conditions. This failure can lead to the Routing Engine or Flexible PIC Concentrator becoming overwhelmed, disrupting network operations. The vulnerability has a CVSSv3.1 score of 5.3 (Medium), indicating a low-complexity attack that can be launched remotely without authentication, resulting in a low impact on availability. It does not affect IPv4 DDoS protection. Currently, there is no evidence of active exploitation, and no public exploit code (Metasploit, Nuclei, ExploitDB) is available. The vulnerability has received minimal community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
17.2CPE matchmatch criteria | cpe:2.3:o:juniper:junos:17.2:-:*:*:*:*:*:* | ||
17.2CPE matchmatch criteria | cpe:2.3:o:juniper:junos:17.2:r1:*:*:*:*:*:* | ||
17.2CPE matchmatch criteria | cpe:2.3:o:juniper:junos:17.2:r1-s1:*:*:*:*:*:* | ||
17.2CPE matchmatch criteria | cpe:2.3:o:juniper:junos:17.2:r1-s2:*:*:*:*:*:* | ||
17.2CPE matchmatch criteria | cpe:2.3:o:juniper:junos:17.2:r1-s3:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.