Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
juniper junos space vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv2
CVE-2017-2305
On Juniper Networks Junos Space versions before 16.1R1, due to an insufficient authorization check, readonly users on the Junos Space administrative web interface can create privileged users, allowing privilege escalation.
Juniper Junos Space
6.5
CVSSv2
CVE-2017-2306
On Juniper Networks Junos Space versions before 16.1R1, due to an insufficient authorization check, readonly users on the Junos Space administrative web interface can execute code on the device.
Juniper Junos Space
5
CVSSv2
CVE-2017-2308
An XML External Entity Injection vulnerability in Juniper Networks Junos Space versions before 16.1R1 may allow an authenticated user to read arbitrary files on the device.
Juniper Junos Space
4.3
CVSSv2
CVE-2017-2309
On Juniper Networks Junos Space versions before 16.1R1 when certificate based authentication is enabled for the Junos Space cluster, some restricted web services are accessible over the network. This represents an information leak risk.
Juniper Junos Space
5
CVSSv2
CVE-2017-2310
A firewall bypass vulnerability in the host based firewall of Juniper Networks Junos Space versions before 16.1R1 may permit certain crafted packets, representing a network integrity risk.
Juniper Junos Space
6
CVSSv2
CVE-2017-10612
A persistent site scripting vulnerability in Juniper Networks Junos Space allows users who can change certain configuration to implant malicious Javascript or HTML which may be used to steal information or perform actions as other Junos Space users or administrators. Affected rel...
Juniper Junos Space
4.3
CVSSv2
CVE-2016-4930
Cross-site scripting (XSS) vulnerability in Junos Space prior to 15.2R2 allows remote malicious users to steal sensitive information or perform certain administrative actions.
Juniper Junos Space
7.5
CVSSv2
CVE-2016-1265
A remote unauthenticated network based attacker with access to Junos Space may execute arbitrary code on Junos Space or gain access to devices managed by Junos Space using cross site request forgery (CSRF), default authentication credentials, information leak and command injectio...
Juniper Junos Space
4.3
CVSSv2
CVE-2018-0046
A reflected cross-site scripting vulnerability in OpenNMS included with Juniper Networks Junos Space may allow the stealing of sensitive information or session credentials from Junos Space administrators or perform administrative actions. This issue affects Juniper Networks Junos...
Juniper Junos Space 18.1r1
10
CVSSv2
CVE-2014-3413
The MySQL server in Juniper Networks Junos Space prior to 13.3R1.8 has an unspecified account with a hardcoded password, which allows remote malicious users to obtain sensitive information and consequently obtain administrative control by leveraging database access.
Juniper Junos Space 13.3
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-29895
blind SQL injection
CVE-2024-5064
CVE-2023-52677
CVE-2023-52682
CVE-2024-30051
CVE-2024-35849
remote attackers
remote
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
NEXT »