Junos Space

Vendor:

First CVE: May 8, 2013 · Active for 13 years

80
Total CVEs
More Total CVEs than 99% of tracked products
7.3
Avg CVEs / Year
Higher CVE frequency than 93% of tracked products
6.7
Avg CVSS
Higher Avg CVSS than 36% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Junos Space over time

Volume of CVEsAvg CVSS Base Score
First CVE
May 8, 2013
13 years ago
Most Recent CVE
Apr 9, 2026
106 days ago

CVE Severity & Scoring

Junos Space80 CVEs
All CVEs352,294 CVEs
MediumHighCritical
Attack Vector
Local1 (1.3%)
Network58 (72.5%)
Unknown21 (26.3%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low54 (67.5%)
High5 (6.3%)
Unknown21 (26.3%)
User Interaction
None25 (31.3%)
Unknown21 (26.3%)
Required34 (42.5%)
Privileges Required
Low17 (21.3%)
High0 (0.0%)
None42 (52.5%)
Unknown21 (26.3%)

Top CVEs

Signals from CVEs in this product scope (80 CVEs).

80 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JavaFX 2.2.51; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality, integrity, and av
Apr 16, 201410.036NONO
An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Juniper Networks Junos Space allows an attacker to store script tags direct
Oct 9, 20259.030NONO
Command injection vulnerability in Junos Space before 15.2R2 allows attackers to execute arbitrary code as a root user.
Mar 20, 20178.830NONO
Insufficient authentication vulnerability in Junos Space before 15.2R2 allows remote network based users with access to Junos Space web interface to perform certain administrative
Mar 20, 20179.830NONO
A remote unauthenticated network based attacker with access to Junos Space may execute arbitrary code on Junos Space or gain access to devices managed by Junos Space using cross si
Oct 13, 20179.829NONO
An authentication bypass vulnerability in Juniper Networks Junos Space Network Management Platform may allow a remote unauthenticated network based attacker to login as any privile
Oct 13, 20179.828NONO
On Juniper Networks Junos Space versions prior to 16.1R1, due to an insufficient authorization check, readonly users on the Junos Space administrative web interface can create priv
May 30, 20178.828NONO
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via vect
Oct 15, 20147.528NONO
The Junos Space application, which allows Device Image files to be uploaded, has insufficient validity checking which may allow uploading of malicious images or scripts, or other c
Jan 15, 20198.827NONO
On Juniper Networks Junos Space versions prior to 16.1R1, due to an insufficient authorization check, readonly users on the Junos Space administrative web interface can execute cod
May 30, 20178.827NONO

Exploit Exposure

Signals from CVEs in this product scope (80 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (80 CVEs).

Media Mentions

Signals from CVEs in this product scope (80 CVEs).

Top CNAs Publishing CVEs For Junos Space

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
24.1286.20.2%00
23.126.80.3%00
22.316.10.2%00
22.226.80.3%00
22.116.10.2%00
21.316.10.2%00
21.216.10.2%00
21.116.10.2%00
20.316.10.2%00
20.116.81.1%00
2.046.91.6%00
19.416.81.1%00
19.326.71.4%00
19.226.71.4%00
19.136.51.1%00
18.436.51.1%00
18.336.51.1%00
18.256.91.0%00
18.1r136.31.0%00
18.156.91.0%00