Juniper Networks Screenos vulnerabilities
6 known vulnerabilities affecting juniper_networks/screenos.
Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM6
Vulnerabilities
Page 1 of 1
CVE-2017-2336P4MEDIUMCVSS 5.4v6.3.0 prior to 6.3.0r242017-07-17
CVE-2017-2336 [MEDIUM] CWE-79 CVE-2017-2336: A reflected cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScr
A reflected cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN running ScreenOS allows a network based attacker to inject HTML/JavaScript content into the management session of other users including the administrator. This enables the attacker to effectively execute commands with the permissions of
nvd
CVE-2017-2337P4MEDIUMCVSS 5.4v6.3.0 prior to 6.3.0r242017-07-17
CVE-2017-2337 [MEDIUM] CWE-79 CVE-2017-2337: A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetSc
A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN running ScreenOS allows a user with the 'security' role to inject HTML/JavaScript content into the management session of other users including the administrator. This enables the lower-privileged user to effectively execute commands wit
nvd
CVE-2017-2338P4MEDIUMCVSS 5.4v6.3.0 prior to 6.3.0r242017-07-17
CVE-2017-2338 [MEDIUM] CWE-79 CVE-2017-2338: A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetSc
A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN running ScreenOS allows a user with the 'security' role to inject HTML/JavaScript content into the management session of other users including the administrator. This enables the lower-privileged user to effectively execute commands wit
nvd
CVE-2017-2335P4MEDIUMCVSS 5.4v6.3.0 prior to 6.3.0r242017-07-17
CVE-2017-2335 [MEDIUM] CWE-79 CVE-2017-2335: A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetSc
A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN running ScreenOS allows a user with the 'security' role to inject HTML/JavaScript content into the management session of other users including the administrator. This enables the lower-privileged user to effectively execute commands wit
nvd
CVE-2017-2339P4MEDIUMCVSS 5.4v6.3.0 prior to 6.3.0r242017-07-17
CVE-2017-2339 [MEDIUM] CWE-79 CVE-2017-2339: A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetSc
A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN running ScreenOS allows a user with the 'security' role to inject HTML/JavaScript content into the management session of other users including the administrator. This enables the lower-privileged user to effectively execute commands wit
nvd
CVE-2018-0059P4MEDIUMCVSS 5.4≥ 6.3.0, < 6.3.0r262018-10-10
CVE-2018-0059 [MEDIUM] CWE-79 CVE-2018-0059: A persistent cross-site scripting vulnerability in the graphical user interface of ScreenOS may allo
A persistent cross-site scripting vulnerability in the graphical user interface of ScreenOS may allow a remote authenticated user to inject web script or HTML and steal sensitive data and credentials from a web administration session, possibly tricking a follow-on administrative user to perform administrative actions on the device. Affected releases ar
nvd