4.3
CVSSv2

CVE-2014-2712

Published: 14/04/2014 Updated: 08/10/2015
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in J-Web in Juniper Junos prior to 10.0S25, 10.4 prior to 10.4R10, 11.4 prior to 11.4R11, 12.1 prior to 12.1R9, 12.1X44 prior to 12.1X44-D30, 12.1X45 prior to 12.1X45-D20, 12.1X46 prior to 12.1X46-D10, and 12.2 prior to 12.2R1 allows remote malicious users to inject arbitrary web script or HTML via unspecified parameters to index.php.

Vulnerable Product Search on Vulmon Subscribe to Product

juniper junos 12.1x46

juniper junos 10.4

juniper junos 12.2

juniper junos 12.1

juniper junos 12.1x44

juniper junos 12.1x45

juniper junos 11.4

juniper junos 10.0