PT-2009-1571 · Juniper Networks · Juniper Netscreen Screenos

Published

2009-02-09

·

Updated

2011-03-08

·

CVE-2008-6096

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Juniper NetScreen ScreenOS versions prior to 5.4r10 Juniper NetScreen ScreenOS versions prior to 6.0r6 Juniper NetScreen ScreenOS versions prior to 6.1r2
Description A cross-site scripting (XSS) issue allows remote attackers to inject arbitrary web script or HTML via the user name parameter to the web interface login page or the telnet login page.
Recommendations For versions prior to 5.4r10, update to version 5.4r10 or later. For versions prior to 6.0r6, update to version 6.0r6 or later. For versions prior to 6.1r2, update to version 6.1r2 or later.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-6096

Affected Products

Juniper Netscreen Screenos