Ex2300 C
Vendor:
First CVE: Mar 31, 2015 · Active for 11 years
38
Total CVEs
More Total CVEs than 97% of tracked products
4.2
Avg CVEs / Year
Higher CVE frequency than 86% of tracked products
7.1
Avg CVSS
Higher Avg CVSS than 42% of tracked products
7.9%
KEV Rate
Higher KEV Rate than 97% of tracked products
Trends Over Time
The number and severity of CVEs published that impact Ex2300 C over time
Volume of CVEsAvg CVSS Base Score
First CVE
Mar 31, 2015
11 years ago
Most Recent CVE
Jul 9, 2026
15 days ago
CVE Severity & Scoring
Ex2300 C38 CVEs
42%
53%
All CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local6 (15.8%)
Network25 (65.8%)
Unknown1 (2.6%)
Physical1 (2.6%)
Adjacent Network5 (13.2%)
Attack Complexity
Low36 (94.7%)
High1 (2.6%)
Unknown1 (2.6%)
User Interaction
None31 (81.6%)
Unknown1 (2.6%)
Required6 (15.8%)
Privileges Required
Low7 (18.4%)
High0 (0.0%)
None30 (78.9%)
Unknown1 (2.6%)
Top CVEs
Signals from CVEs in this product scope (38 CVEs).
38 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-36844MEDIUM A PHP External Variable Modification vulnerability in J-Web of Juniper Networks Junos OS on EX Series allows an unauthenticated, network-based attacker to control certain, importan | Aug 17, 2023 | 5.3 | 95 | YES | YES |
CVE-2023-36847MEDIUM A Missing Authentication for Critical Function vulnerability in Juniper Networks Junos OS on EX Series allows an unauthenticated, network-based attacker to cause limited impact to | Aug 17, 2023 | 5.3 | 91 | YES | NO |
CVE-2023-36851MEDIUM A Missing Authentication for Critical Function vulnerability in Juniper Networks Junos OS on SRX Series allows an unauthenticated, network-based attacker to cause limited impact to | Sep 27, 2023 | 5.3 | 57 | YES | NO |
CVE-2014-9708MEDIUM Embedthis Appweb before 4.6.6 and 5.x before 5.2.1 allows remote attackers to cause a denial of service (NULL pointer dereference) via a Range header with an empty value, as demons | Mar 31, 2015 | 5.0 | 42 | NO | NO |
CVE-2019-0006CRITICAL A certain crafted HTTP packet can trigger an uninitialized function pointer deference vulnerability in the Packet Forwarding Engine manager (fxpc) on all EX, QFX and MX Series devi | Jan 15, 2019 | 9.8 | 33 | NO | NO |
CVE-2021-0211CRITICAL An improper check for unusual or exceptional conditions in Juniper Networks Junos OS and Junos OS Evolved Routing Protocol Daemon (RPD) service allows an attacker to send a valid B | Jan 15, 2021 | 10.0 | 31 | NO | NO |
CVE-2021-0275HIGH A Cross-site Scripting (XSS) vulnerability in J-Web on Juniper Networks Junos OS allows an attacker to target another user's session thereby gaining access to the users session. Th | Apr 22, 2021 | 8.8 | 28 | NO | NO |
CVE-2019-0062HIGH A session fixation vulnerability in J-Web on Junos OS may allow an attacker to use social engineering techniques to fix and hijack a J-Web administrators web session and potentiall | Oct 9, 2019 | 8.8 | 28 | NO | NO |
CVE-2026-57032MEDIUM An Improper Handling of Undefined Parameters vulnerability in the packet forwarding engine (pfe) of Juniper Networks Junos OS on EX Series devices allows an authenticated attacker | Jul 9, 2026 | 6.5 | 27 | NO | NO |
CVE-2018-0043HIGH Receipt of a specific MPLS packet may cause the routing protocol daemon (RPD) process to crash and restart or may lead to remote code execution. By continuously sending specific MP | Oct 10, 2018 | 8.8 | 27 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (38 CVEs).
CISA KEV
3 CVEs
7.9% of CVEs· 97th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
1 CVE
2.6% of CVEs· 96th percentile
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (38 CVEs).
Media Mentions
Signals from CVEs in this product scope (38 CVEs).
Top CNAs Publishing CVEs For Ex2300 C
Top CWEs
Versions
No cataloged versions.