CVE-2021-0261 is a denial-of-service vulnerability affecting Juniper Networks Junos OS, specifically the HTTP/HTTPS service used by J-Web, Web Authentication, and other related features. An unauthenticated attacker can exploit this by sending a high volume of specific requests, leading to an extended DoS for these services. Rated with a CVSS score of 7.5 (HIGH), this vulnerability is network-exploitable with low attack complexity, requiring no privileges or user interaction. The primary impact is high availability loss (Denial of Service). There is currently no evidence of active exploitation, and no public exploit code (Metasploit, Nuclei, ExploitDB) is available. Community discussion and media coverage for this CVE are minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 12.3, < 12.3R12-S17CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* | ||
>= 12.3X48, < 12.3X48-D105CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* | ||
>= 15.1X49, < 15.1X49-D230CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* | ||
>= 15.1, < 15.1R7-S8CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* | ||
>= 16.1, < 16.1R7-S8CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.