Juniper Networks Junos Space Security Director vulnerabilities
3 known vulnerabilities affecting juniper_networks/junos_space_security_director.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2025-59974CRITICALCVSS 9.3fixed in 24.1R42025-10-09
CVE-2025-59974 [CRITICAL] CWE-79 CVE-2025-59974: An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerabilit
An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Junos Space Security Director allows an attacker to inject malicious scripts into the application, which are then stored and executed in the context of other users' browsers when they access affected pages.This issue affects Juniper Security Dir
cvelistv5nvd
CVE-2025-59968HIGHCVSS 7.7fixed in 24.1R3 Patch V42025-10-09
CVE-2025-59968 [HIGH] CWE-862 CVE-2025-59968: A Missing Authorization vulnerability in the Juniper Networks Junos Space Security Director allows a
A Missing Authorization vulnerability in the Juniper Networks Junos Space Security Director allows an unauthenticated network-based attacker to read or modify metadata via the web interface.
Tampering with this metadata can result in managed SRX Series devices permitting network traffic that should otherwise be blocked by policy, effectively bypassi
cvelistv5nvd
CVE-2018-0047MEDIUMCVSS 5.4≥ unspecified, ≤ 17.2R22018-10-10
CVE-2018-0047 [HIGH] CWE-79 CVE-2018-0047: A persistent cross-site scripting vulnerability in the UI framework used by Junos Space Security Dir
A persistent cross-site scripting vulnerability in the UI framework used by Junos Space Security Director may allow authenticated users to inject persistent and malicious scripts. This may allow stealing of information or performing actions as a different user when other users access the Security Director web interface. This issue affects all versions of
cvelistv5nvd