CVE-2020-1645 describes a vulnerability in Juniper Networks Junos OS on MX Series devices with specific MS-PIC, MS-MIC, or MS-MPC cards when DNS filtering is enabled. An incoming packet stream can crash the mspmand process, causing the Services PIC to restart and temporarily bypass all services, including DNS filtering. This issue affects various Junos OS versions from 17.3 to 19.4. The vulnerability has a CVSS score of 8.3 (HIGH), indicating a severe risk. It can be exploited remotely over the network with low attack complexity and no user interaction, potentially leading to a partial loss of confidentiality, integrity, and availability. The primary impact is the temporary bypass of critical security services like DNS sinkholing. Currently, there is no evidence of active exploitation, and no public exploit code (Metasploit, Nuclei, ExploitDB) is available. Community discussion and media coverage for this CVE are minimal, suggesting a low level of public awareness or attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
17.3CPE matchmatch criteria | cpe:2.3:o:juniper:junos:17.3:-:*:*:*:*:*:* | ||
17.3CPE matchmatch criteria | cpe:2.3:o:juniper:junos:17.3:r1-s1:*:*:*:*:*:* | ||
17.3CPE matchmatch criteria | cpe:2.3:o:juniper:junos:17.3:r2:*:*:*:*:*:* | ||
17.3CPE matchmatch criteria | cpe:2.3:o:juniper:junos:17.3:r2-s1:*:*:*:*:*:* | ||
17.3CPE matchmatch criteria | cpe:2.3:o:juniper:junos:17.3:r2-s2:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.