Mx960
Vendor:
First CVE: Jan 16, 2015 · Active for 11 years
102
Total CVEs
More Total CVEs than 99% of tracked products
9.3
Avg CVEs / Year
Higher CVE frequency than 95% of tracked products
6.7
Avg CVSS
Higher Avg CVSS than 35% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Mx960 over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jan 16, 2015
11 years ago
Most Recent CVE
Jul 9, 2026
15 days ago
CVE Severity & Scoring
Mx960102 CVEs
54%
45%
All CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local9 (8.8%)
Network64 (62.7%)
Unknown2 (2.0%)
Physical0 (0.0%)
Adjacent Network27 (26.5%)
Attack Complexity
Low91 (89.2%)
High9 (8.8%)
Unknown2 (2.0%)
User Interaction
None100 (98.0%)
Unknown2 (2.0%)
Required0 (0.0%)
Privileges Required
Low11 (10.8%)
High0 (0.0%)
None89 (87.3%)
Unknown2 (2.0%)
Top CVEs
Signals from CVEs in this product scope (102 CVEs).
102 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2014-9708MEDIUM Embedthis Appweb before 4.6.6 and 5.x before 5.2.1 allows remote attackers to cause a denial of service (NULL pointer dereference) via a Range header with an empty value, as demons | Mar 31, 2015 | 5.0 | 42 | NO | NO |
CVE-2026-57026HIGH An Improper Validation of Syntactic Correctness of Input vulnerability in the SIP plugin of Juniper Networks Junos OS on MX Series with SPC3 and SRX Series allows an unauthenticate | Jul 9, 2026 | 7.5 | 35 | NO | NO |
CVE-2026-57023HIGH An Improper Validation of Specified Quantity in Input vulnerability in the TCP proxy plugin of Juniper Networks Junos OS on MX Series with SPC3, and SRX Series allows an unauthenti | Jul 9, 2026 | 7.5 | 34 | NO | NO |
CVE-2019-0007CRITICAL The vMX Series software uses a predictable IP ID Sequence Number. This leaves the system as well as clients connecting through the device susceptible to a family of attacks which r | Jan 15, 2019 | 10.0 | 32 | NO | NO |
CVE-2026-33785HIGH A Missing Authorization vulnerability in the CLI of Juniper Networks Junos OS on MX Series allows a local, authenticated user with low privileges to execute specific commands which | Apr 9, 2026 | 8.8 | 30 | NO | NO |
CVE-2026-57022MEDIUM An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on MX with SPC3 and SRX Series allows an un | Jul 9, 2026 | 5.9 | 29 | NO | NO |
CVE-2026-57019MEDIUM An Improper Validation of Specified Quantity in Input vulnerability in the Packet Forwarding Engine (pfe) of Juniper Networks Junos OS on MX Series allows an unauthenticated, adjac | Jul 9, 2026 | 6.5 | 29 | NO | NO |
CVE-2021-0251HIGH A NULL Pointer Dereference vulnerability in the Captive Portal Content Delivery (CPCD) services daemon (cpcd) of Juniper Networks Junos OS on MX Series with MS-PIC, MS-SPC3, MS-MIC | Apr 22, 2021 | 8.6 | 27 | NO | NO |
CVE-2026-57054MEDIUM A Use of Incorrectly-Resolved Name or Reference vulnerability in the URL filtering plugin of Juniper Networks Junos OS on MX Series allows an unauthenticated, network-based attacke | Jul 9, 2026 | 5.8 | 26 | NO | NO |
CVE-2026-33778HIGH An Improper Validation of Syntactic Correctness of Input vulnerability in the IPsec library used by kmd and iked of Juniper Networks Junos OS on SRX Series and MX Series allows an | Apr 9, 2026 | 7.5 | 26 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (102 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (102 CVEs).
Media Mentions
Signals from CVEs in this product scope (102 CVEs).
Top CNAs Publishing CVEs For Mx960
Top CWEs
Versions
No cataloged versions.