A persistent cross-site scripting vulnerability in the graphical user interface of ScreenOS may allow a remote authenticated user to inject web script or HTML and steal sensitive data and credentials from a web administration session, possibly tricking a follow-on administrative user to perform administrative actions on the device. Affected releases are Juniper Networks ScreenOS 6.3.0 versions prior to 6.3.0r26.
2018-10-10T18:29:03.250
2024-11-21T03:37:28.993
Modified
CVSSv3.0: 5.4 (MEDIUM)
AV:N/AC:M/Au:S/C:N/I:P/A:N
6.8
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | juniper | netscreen_screenos | 6.3.0 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r1 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r2 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r3 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r4 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r5 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r6 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r7 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r8 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r9 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r10 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r11 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r12 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r13 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r14 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r15 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r16 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r17 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r18 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r19 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r21 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r22 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r23 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r23b1 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r24 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r24b1 | Yes |
Operating System | juniper | netscreen_screenos | 6.3.0r25 | Yes |