Qfx10002
Vendor:
First CVE: Apr 15, 2016 · Active for 10 years
34
Total CVEs
More Total CVEs than 96% of tracked products
3.8
Avg CVEs / Year
Higher CVE frequency than 83% of tracked products
6.9
Avg CVSS
Higher Avg CVSS than 40% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Qfx10002 over time
Volume of CVEsAvg CVSS Base Score
First CVE
Apr 15, 2016
10 years ago
Most Recent CVE
Oct 11, 2024
654 days ago
CVE Severity & Scoring
Qfx1000234 CVEs
50%
44%
All CVEs352,727 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local2 (5.9%)
Network20 (58.8%)
Unknown0 (0.0%)
Physical1 (2.9%)
Adjacent Network11 (32.4%)
Attack Complexity
Low28 (82.4%)
High6 (17.6%)
Unknown0 (0.0%)
User Interaction
None33 (97.1%)
Unknown0 (0.0%)
Required1 (2.9%)
Privileges Required
Low2 (5.9%)
High1 (2.9%)
None31 (91.2%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (34 CVEs).
34 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-0006CRITICAL A certain crafted HTTP packet can trigger an uninitialized function pointer deference vulnerability in the Packet Forwarding Engine manager (fxpc) on all EX, QFX and MX Series devi | Jan 15, 2019 | 9.8 | 33 | NO | NO |
CVE-2018-0035CRITICAL QFX5200 and QFX10002 devices that have been shipped with Junos OS 15.1X53-D21, 15.1X53-D30, 15.1X53-D31, 15.1X53-D32, 15.1X53-D33 and 15.1X53-D60 or have been upgraded to these rel | Jul 11, 2018 | 9.8 | 31 | NO | NO |
CVE-2018-0043HIGH Receipt of a specific MPLS packet may cause the routing protocol daemon (RPD) process to crash and restart or may lead to remote code execution. By continuously sending specific MP | Oct 10, 2018 | 8.8 | 27 | NO | NO |
CVE-2018-0005HIGH QFX and EX Series switches configured to drop traffic when the MAC move limit is exceeded will forward traffic instead of dropping traffic. This can lead to denials of services or | Jan 10, 2018 | 8.8 | 27 | NO | NO |
CVE-2019-0014HIGH On QFX and PTX Series, receipt of a malformed packet for J-Flow sampling might crash the FPC (Flexible PIC Concentrator) process which causes all interfaces to go down. By continuo | Jan 15, 2019 | 7.5 | 26 | NO | NO |
CVE-2017-2341HIGH An insufficient authentication vulnerability on platforms where Junos OS instances are run in a virtualized environment, may allow unprivileged users on the Junos OS instance to ga | Jul 17, 2017 | 8.8 | 26 | NO | NO |
CVE-2018-0049HIGH A NULL Pointer Dereference vulnerability in Juniper Networks Junos OS allows an attacker to cause the Junos OS kernel to crash. Continued receipt of this specifically crafted malic | Oct 10, 2018 | 7.5 | 25 | NO | NO |
CVE-2023-22403HIGH
An Allocation of Resources Without Limits or Throttling vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows a network-based, unauthenticated at | Jan 13, 2023 | 7.5 | 24 | NO | NO |
CVE-2022-22223HIGH On QFX10000 Series devices using Juniper Networks Junos OS when configured as transit IP/MPLS penultimate hop popping (PHP) nodes with link aggregation group (LAG) interfaces, an I | Oct 18, 2022 | 7.5 | 24 | NO | NO |
CVE-2021-0280HIGH Due to an Improper Initialization vulnerability in Juniper Networks Junos OS on PTX platforms and QFX10K Series with Paradise (PE) chipset-based line cards, ddos-protection configu | Jul 15, 2021 | 7.5 | 24 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (34 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (34 CVEs).
Media Mentions
Signals from CVEs in this product scope (34 CVEs).
Top CNAs Publishing CVEs For Qfx10002
Top CWEs
Versions
No cataloged versions.