6.4
CVSSv2

CVE-2022-22186

Published: 14/04/2022 Updated: 21/04/2022
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
CVSS v3 Base Score: 6.5 | Impact Score: 2.5 | Exploitability Score: 3.9
VMScore: 571
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

Due to an Improper Initialization vulnerability in Juniper Networks Junos OS on EX4650 devices, packets received on the management interface (em0) but not destined to the device, may be improperly forwarded to an egress interface, instead of being discarded. Such traffic being sent by a client may appear genuine, but is non-standard in nature and should be considered as potentially malicious. This issue affects: Juniper Networks Junos OS on EX4650 Series: All versions before 19.1R3-S8; 19.2 versions before 19.2R3-S5; 19.3 versions before 19.3R3-S5; 19.4 versions before 19.4R3-S7; 20.1 versions before 20.1R3-S3; 20.2 versions before 20.2R3-S4; 20.3 versions before 20.3R3-S3; 20.4 versions before 20.4R3-S2; 21.1 versions before 21.1R3-S1; 21.2 versions before 21.2R3; 21.3 versions before 21.3R2; 21.4 versions before 21.4R2; 22.1 versions before 22.1R1.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

juniper junos

juniper junos 19.1

juniper junos 19.2

juniper junos 19.3

juniper junos 19.4

juniper junos 20.1

juniper junos 20.2

juniper junos 20.3

juniper junos 20.4

juniper junos 21.1

juniper junos 21.2

juniper junos 21.3

juniper junos 21.4