Qfx3600
Vendor:
First CVE: Apr 15, 2016 · Active for 10 years
18
Total CVEs
More Total CVEs than 93% of tracked products
2.6
Avg CVEs / Year
Higher CVE frequency than 75% of tracked products
6.8
Avg CVSS
Higher Avg CVSS than 36% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Qfx3600 over time
Volume of CVEsAvg CVSS Base Score
First CVE
Apr 15, 2016
10 years ago
Most Recent CVE
Apr 17, 2023
1,196 days ago
CVE Severity & Scoring
Qfx360018 CVEs
56%
39%
All CVEs352,713 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local1 (5.6%)
Network13 (72.2%)
Unknown0 (0.0%)
Physical1 (5.6%)
Adjacent Network3 (16.7%)
Attack Complexity
Low13 (72.2%)
High5 (27.8%)
Unknown0 (0.0%)
User Interaction
None17 (94.4%)
Unknown0 (0.0%)
Required1 (5.6%)
Privileges Required
Low2 (11.1%)
High1 (5.6%)
None15 (83.3%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (18 CVEs).
18 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-0006CRITICAL A certain crafted HTTP packet can trigger an uninitialized function pointer deference vulnerability in the Packet Forwarding Engine manager (fxpc) on all EX, QFX and MX Series devi | Jan 15, 2019 | 9.8 | 33 | NO | NO |
CVE-2018-0043HIGH Receipt of a specific MPLS packet may cause the routing protocol daemon (RPD) process to crash and restart or may lead to remote code execution. By continuously sending specific MP | Oct 10, 2018 | 8.8 | 27 | NO | NO |
CVE-2019-0014HIGH On QFX and PTX Series, receipt of a malformed packet for J-Flow sampling might crash the FPC (Flexible PIC Concentrator) process which causes all interfaces to go down. By continuo | Jan 15, 2019 | 7.5 | 26 | NO | NO |
CVE-2018-0049HIGH A NULL Pointer Dereference vulnerability in Juniper Networks Junos OS allows an attacker to cause the Junos OS kernel to crash. Continued receipt of this specifically crafted malic | Oct 10, 2018 | 7.5 | 25 | NO | NO |
CVE-2018-0024HIGH An Improper Privilege Management vulnerability in a shell session of Juniper Networks Junos OS allows an authenticated unprivileged attacker to gain full control of the system. Aff | Jul 11, 2018 | 7.8 | 24 | NO | NO |
CVE-2019-0003MEDIUM When a specific BGP flowspec configuration is enabled and upon receipt of a specific matching BGP packet meeting a specific term in the flowspec configuration, a reachable assertio | Jan 15, 2019 | 5.9 | 22 | NO | NO |
CVE-2018-0008MEDIUM An unauthenticated root login may allow upon reboot when a commit script is used. A commit script allows a device administrator to execute certain instructions during commit, which | Jan 10, 2018 | 6.2 | 22 | NO | NO |
CVE-2018-0060MEDIUM An improper input validation weakness in the device control daemon process (dcd) of Juniper Networks Junos OS allows an attacker to cause a Denial of Service to the dcd process and | Oct 10, 2018 | 5.9 | 21 | NO | NO |
CVE-2021-31361MEDIUM An Improper Check for Unusual or Exceptional Conditions vulnerability combined with Improper Handling of Exceptional Conditions in Juniper Networks Junos OS on QFX Series and PTX S | Oct 19, 2021 | 5.3 | 20 | NO | NO |
CVE-2021-0289MEDIUM When user-defined ARP Policer is configured and applied on one or more Aggregated Ethernet (AE) interface units, a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability b | Jul 15, 2021 | 5.3 | 20 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (18 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (18 CVEs).
Media Mentions
Signals from CVEs in this product scope (18 CVEs).
Top CNAs Publishing CVEs For Qfx3600
Top CWEs
Versions
No cataloged versions.