CVE-2013-4687 describes a denial-of-service vulnerability in Juniper Junos on SRX devices, specifically affecting versions 10.4, 11.2, 11.4, and 12.1. Remote attackers can crash the flowd daemon by sending crafted TCP packets when certain Application Layer Gateways (ALGs) are enabled. This vulnerability has a CVSS score of 7.8, indicating high severity. It is easily exploitable over the network (AV:N/AC:L) and can lead to a complete denial of service (A:C) without requiring authentication. There is no evidence of active exploitation, and no public exploit code (Metasploit, Nuclei, ExploitDB) is available. Community discussion and media coverage for this CVE are minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
10.4CPE matchmatch criteria | cpe:2.3:o:juniper:junos:10.4:*:*:*:*:*:*:* | ||
11.2CPE matchmatch criteria | cpe:2.3:o:juniper:junos:11.2:*:*:*:*:*:*:* | ||
11.4CPE matchmatch criteria | cpe:2.3:o:juniper:junos:11.4:*:*:*:*:*:*:* | ||
12.1CPE matchmatch criteria | cpe:2.3:o:juniper:junos:12.1:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:h:juniper:srx100:-:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:N/I:N/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.