Mx150

Vendor:

First CVE: Mar 31, 2015 · Active for 11 years

58
Total CVEs
More Total CVEs than 98% of tracked products
7.3
Avg CVEs / Year
Higher CVE frequency than 93% of tracked products
6.7
Avg CVSS
Higher Avg CVSS than 36% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Mx150 over time

Volume of CVEsAvg CVSS Base Score
First CVE
Mar 31, 2015
11 years ago
Most Recent CVE
Jul 11, 2024
744 days ago

CVE Severity & Scoring

Mx15058 CVEs
All CVEs352,427 CVEs
MediumHighCritical
Attack Vector
Local3 (5.2%)
Network36 (62.1%)
Unknown1 (1.7%)
Physical0 (0.0%)
Adjacent Network18 (31.0%)
Attack Complexity
Low55 (94.8%)
High2 (3.4%)
Unknown1 (1.7%)
User Interaction
None57 (98.3%)
Unknown1 (1.7%)
Required0 (0.0%)
Privileges Required
Low5 (8.6%)
High0 (0.0%)
None52 (89.7%)
Unknown1 (1.7%)

Top CVEs

Signals from CVEs in this product scope (58 CVEs).

58 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Embedthis Appweb before 4.6.6 and 5.x before 5.2.1 allows remote attackers to cause a denial of service (NULL pointer dereference) via a Range header with an empty value, as demons
Mar 31, 20155.042NONO
The vMX Series software uses a predictable IP ID Sequence Number. This leaves the system as well as clients connecting through the device susceptible to a family of attacks which r
Jan 15, 201910.032NONO
A NULL Pointer Dereference vulnerability in the Captive Portal Content Delivery (CPCD) services daemon (cpcd) of Juniper Networks Junos OS on MX Series with MS-PIC, MS-SPC3, MS-MIC
Apr 22, 20218.627NONO
On Juniper Networks Junos MX Series with service card configured, receipt of a stream of specific packets may crash the MS-PIC component on MS-MIC or MS-MPC. By continuously sendin
Jul 17, 20207.525NONO
A vulnerability in Juniper Networks Junos OS on vMX and MX150 devices may allow an attacker to cause a Denial of Service (DoS) by sending specific packets requiring special process
Apr 8, 20207.525NONO
When an MX Series Broadband Remote Access Server (BRAS) is configured as a Broadband Network Gateway (BNG) with DHCPv6 enabled, jdhcpd might crash when receiving a specific crafted
Oct 9, 20197.525NONO
An issue was discovered in Embedthis GoAhead before 4.0.1 and Appweb before 7.0.2. The server mishandles some HTTP request fields associated with time, which results in a NULL poin
Aug 18, 20187.525NONO
A Buffer Overflow vulnerability in SIP ALG of Juniper Networks Junos OS allows a network-based, unauthenticated attacker to cause a Denial of Service (DoS). On all MX Series and SR
Jan 13, 20237.524NONO
An Out-of-Bounds Write vulnerability in the H.323 ALG of Juniper Networks Junos OS allows an unauthenticated, network-based attacker to cause Denial of Service (DoS). On all MX Ser
Jan 13, 20237.524NONO
An Improper Check or Handling of Exceptional Conditions vulnerability in the IPsec library of Juniper Networks Junos OS allows a network-based, unauthenticated attacker to cause De
Jan 13, 20237.524NONO

Exploit Exposure

Signals from CVEs in this product scope (58 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (58 CVEs).

Media Mentions

Signals from CVEs in this product scope (58 CVEs).

Top CNAs Publishing CVEs For Mx150

Top CWEs

Versions

No cataloged versions.