Qfx5200

Vendor:

First CVE: Apr 15, 2016 · Active for 10 years

67
Total CVEs
More Total CVEs than 98% of tracked products
6.1
Avg CVEs / Year
Higher CVE frequency than 91% of tracked products
6.8
Avg CVSS
Higher Avg CVSS than 39% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Qfx5200 over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 15, 2016
10 years ago
Most Recent CVE
Jul 9, 2026
17 days ago

CVE Severity & Scoring

Qfx520067 CVEs
All CVEs352,708 CVEs
MediumHighCritical
Attack Vector
Local3 (4.5%)
Network36 (53.7%)
Unknown0 (0.0%)
Physical3 (4.5%)
Adjacent Network25 (37.3%)
Attack Complexity
Low57 (85.1%)
High10 (14.9%)
Unknown0 (0.0%)
User Interaction
None66 (98.5%)
Unknown0 (0.0%)
Required1 (1.5%)
Privileges Required
Low4 (6.0%)
High2 (3.0%)
None61 (91.0%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (67 CVEs).

67 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
A certain crafted HTTP packet can trigger an uninitialized function pointer deference vulnerability in the Packet Forwarding Engine manager (fxpc) on all EX, QFX and MX Series devi
Jan 15, 20199.833NONO
QFX5200 and QFX10002 devices that have been shipped with Junos OS 15.1X53-D21, 15.1X53-D30, 15.1X53-D31, 15.1X53-D32, 15.1X53-D33 and 15.1X53-D60 or have been upgraded to these rel
Jul 11, 20189.831NONO
If RSH service is enabled on Junos OS and if the PAM authentication is disabled, a remote unauthenticated attacker can obtain root access to the device. RSH service is disabled by
Oct 10, 20188.128NONO
Receipt of a specific Draft-Rosen MVPN control packet may cause the routing protocol daemon (RPD) process to crash and restart or may lead to remote code execution. By continuously
Oct 10, 20188.827NONO
Receipt of a specific MPLS packet may cause the routing protocol daemon (RPD) process to crash and restart or may lead to remote code execution. By continuously sending specific MP
Oct 10, 20188.827NONO
QFX and EX Series switches configured to drop traffic when the MAC move limit is exceeded will forward traffic instead of dropping traffic. This can lead to denials of services or
Jan 10, 20188.827NONO
On QFX and PTX Series, receipt of a malformed packet for J-Flow sampling might crash the FPC (Flexible PIC Concentrator) process which causes all interfaces to go down. By continuo
Jan 15, 20197.526NONO
An insufficient authentication vulnerability on platforms where Junos OS instances are run in a virtualized environment, may allow unprivileged users on the Junos OS instance to ga
Jul 17, 20178.826NONO
A Missing Synchronization vulnerability in the flow collector handler of Juniper Networks Junos OS Evolved on QFX Series allows an adjacent, unauthenticated attacker to cause a Den
Jul 9, 20265.325NONO
A Return of Pointer Value Outside of Expected Range vulnerability in the fileio library of Juniper Networks Junos OS and Junos OS Evolved allows a local, low-privilged attacker to
Jul 9, 20265.525NONO

Exploit Exposure

Signals from CVEs in this product scope (67 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (67 CVEs).

Media Mentions

Signals from CVEs in this product scope (67 CVEs).

Top CNAs Publishing CVEs For Qfx5200

Top CWEs

Versions

No cataloged versions.