Unrated severityNVD Advisory· Published Oct 10, 2018· Updated Sep 16, 2024
ScreenOS: Stored Cross-Site Scripting (XSS) vulnerability
CVE-2018-0059
Description
A persistent cross-site scripting vulnerability in the graphical user interface of ScreenOS may allow a remote authenticated user to inject web script or HTML and steal sensitive data and credentials from a web administration session, possibly tricking a follow-on administrative user to perform administrative actions on the device. Affected releases are Juniper Networks ScreenOS 6.3.0 versions prior to 6.3.0r26.
Affected products
1- Range: 6.3.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- kb.juniper.net/JSA10894mitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.