Mx10008
Vendor:
First CVE: Mar 31, 2015 · Active for 11 years
75
Total CVEs
More Total CVEs than 99% of tracked products
7.5
Avg CVEs / Year
Higher CVE frequency than 93% of tracked products
6.8
Avg CVSS
Higher Avg CVSS than 36% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Mx10008 over time
Volume of CVEsAvg CVSS Base Score
First CVE
Mar 31, 2015
11 years ago
Most Recent CVE
Jul 9, 2026
15 days ago
CVE Severity & Scoring
Mx1000875 CVEs
52%
47%
All CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local8 (10.7%)
Network45 (60.0%)
Unknown1 (1.3%)
Physical0 (0.0%)
Adjacent Network21 (28.0%)
Attack Complexity
Low69 (92.0%)
High5 (6.7%)
Unknown1 (1.3%)
User Interaction
None74 (98.7%)
Unknown1 (1.3%)
Required0 (0.0%)
Privileges Required
Low10 (13.3%)
High0 (0.0%)
None64 (85.3%)
Unknown1 (1.3%)
Top CVEs
Signals from CVEs in this product scope (75 CVEs).
75 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2014-9708MEDIUM Embedthis Appweb before 4.6.6 and 5.x before 5.2.1 allows remote attackers to cause a denial of service (NULL pointer dereference) via a Range header with an empty value, as demons | Mar 31, 2015 | 5.0 | 42 | NO | NO |
CVE-2019-0007CRITICAL The vMX Series software uses a predictable IP ID Sequence Number. This leaves the system as well as clients connecting through the device susceptible to a family of attacks which r | Jan 15, 2019 | 10.0 | 32 | NO | NO |
CVE-2026-33785HIGH A Missing Authorization vulnerability in the CLI of Juniper Networks Junos OS on MX Series allows a local, authenticated user with low privileges to execute specific commands which | Apr 9, 2026 | 8.8 | 30 | NO | NO |
CVE-2026-57019MEDIUM An Improper Validation of Specified Quantity in Input vulnerability in the Packet Forwarding Engine (pfe) of Juniper Networks Junos OS on MX Series allows an unauthenticated, adjac | Jul 9, 2026 | 6.5 | 29 | NO | NO |
CVE-2021-0251HIGH A NULL Pointer Dereference vulnerability in the Captive Portal Content Delivery (CPCD) services daemon (cpcd) of Juniper Networks Junos OS on MX Series with MS-PIC, MS-SPC3, MS-MIC | Apr 22, 2021 | 8.6 | 27 | NO | NO |
CVE-2026-57054MEDIUM A Use of Incorrectly-Resolved Name or Reference vulnerability in the URL filtering plugin of Juniper Networks Junos OS on MX Series allows an unauthenticated, network-based attacke | Jul 9, 2026 | 5.8 | 26 | NO | NO |
CVE-2026-33778HIGH An Improper Validation of Syntactic Correctness of Input vulnerability in the IPsec library used by kmd and iked of Juniper Networks Junos OS on SRX Series and MX Series allows an | Apr 9, 2026 | 7.5 | 26 | NO | NO |
CVE-2026-21918HIGH A Double Free vulnerability in the flow processing daemon (flowd) of Juniper Networks Junos OS on SRX and MX Series allows an unauthenticated, network-based attacker to cause a Den | Jan 15, 2026 | 7.5 | 26 | NO | NO |
CVE-2026-21905HIGH A Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in the SIP application layer gateway (ALG) of Juniper Networks Junos OS on SRX Series and MX Series with MX-S | Jan 15, 2026 | 7.5 | 26 | NO | NO |
CVE-2026-57025MEDIUM A Return of Pointer Value Outside of Expected Range vulnerability in the fileio library of Juniper Networks Junos OS and Junos OS Evolved allows a local, low-privilged attacker to | Jul 9, 2026 | 5.5 | 25 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (75 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (75 CVEs).
Media Mentions
Signals from CVEs in this product scope (75 CVEs).
Top CNAs Publishing CVEs For Mx10008
Top CWEs
Versions
No cataloged versions.