Mx10016
Vendor:
First CVE: Mar 31, 2015 · Active for 11 years
46
Total CVEs
More Total CVEs than 97% of tracked products
5.8
Avg CVEs / Year
Higher CVE frequency than 90% of tracked products
6.7
Avg CVSS
Higher Avg CVSS than 34% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Mx10016 over time
Volume of CVEsAvg CVSS Base Score
First CVE
Mar 31, 2015
11 years ago
Most Recent CVE
Oct 11, 2024
651 days ago
CVE Severity & Scoring
Mx1001646 CVEs
52%
48%
All CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local3 (6.5%)
Network28 (60.9%)
Unknown1 (2.2%)
Physical0 (0.0%)
Adjacent Network14 (30.4%)
Attack Complexity
Low43 (93.5%)
High2 (4.3%)
Unknown1 (2.2%)
User Interaction
None45 (97.8%)
Unknown1 (2.2%)
Required0 (0.0%)
Privileges Required
Low5 (10.9%)
High0 (0.0%)
None40 (87.0%)
Unknown1 (2.2%)
Top CVEs
Signals from CVEs in this product scope (46 CVEs).
46 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2014-9708MEDIUM Embedthis Appweb before 4.6.6 and 5.x before 5.2.1 allows remote attackers to cause a denial of service (NULL pointer dereference) via a Range header with an empty value, as demons | Mar 31, 2015 | 5.0 | 42 | NO | NO |
CVE-2021-0251HIGH A NULL Pointer Dereference vulnerability in the Captive Portal Content Delivery (CPCD) services daemon (cpcd) of Juniper Networks Junos OS on MX Series with MS-PIC, MS-SPC3, MS-MIC | Apr 22, 2021 | 8.6 | 27 | NO | NO |
CVE-2019-0063HIGH When an MX Series Broadband Remote Access Server (BRAS) is configured as a Broadband Network Gateway (BNG) with DHCPv6 enabled, jdhcpd might crash when receiving a specific crafted | Oct 9, 2019 | 7.5 | 25 | NO | NO |
CVE-2018-15504HIGH An issue was discovered in Embedthis GoAhead before 4.0.1 and Appweb before 7.0.2. The server mishandles some HTTP request fields associated with time, which results in a NULL poin | Aug 18, 2018 | 7.5 | 25 | NO | NO |
CVE-2023-22416HIGH A Buffer Overflow vulnerability in SIP ALG of Juniper Networks Junos OS allows a network-based, unauthenticated attacker to cause a Denial of Service (DoS). On all MX Series and SR | Jan 13, 2023 | 7.5 | 24 | NO | NO |
CVE-2023-22415HIGH An Out-of-Bounds Write vulnerability in the H.323 ALG of Juniper Networks Junos OS allows an unauthenticated, network-based attacker to cause Denial of Service (DoS). On all MX Ser | Jan 13, 2023 | 7.5 | 24 | NO | NO |
CVE-2023-22413HIGH An Improper Check or Handling of Exceptional Conditions vulnerability in the IPsec library of Juniper Networks Junos OS allows a network-based, unauthenticated attacker to cause De | Jan 13, 2023 | 7.5 | 24 | NO | NO |
CVE-2023-22412HIGH An Improper Locking vulnerability in the SIP ALG of Juniper Networks Junos OS on MX Series with MS-MPC or MS-MIC card and SRX Series allows an unauthenticated, network-based attack | Jan 13, 2023 | 7.5 | 24 | NO | NO |
CVE-2023-22394HIGH An Improper Handling of Unexpected Data Type vulnerability in the handling of SIP calls in Juniper Networks Junos OS on SRX Series and MX Series platforms allows an attacker to cau | Jan 13, 2023 | 7.5 | 24 | NO | NO |
CVE-2022-22236HIGH An Access of Uninitialized Pointer vulnerability in SIP Application Layer Gateway (ALG) of Juniper Networks Junos OS on SRX Series and MX Series allows an unauthenticated, network- | Oct 18, 2022 | 7.5 | 24 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (46 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (46 CVEs).
Media Mentions
Signals from CVEs in this product scope (46 CVEs).
Top CNAs Publishing CVEs For Mx10016
Top CWEs
Versions
No cataloged versions.