PT-2017-11408 · Juniper Networks · Junos Space

Published

2017-10-13

·

Updated

2019-10-09

·

CVE-2017-10612

CVSS v3.1

8.0

High

VectorAV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Juniper Networks Junos Space versions prior to 17.1R1
Description A persistent site scripting issue in Juniper Networks Junos Space enables users who can modify specific configurations to inject malicious Javascript or HTML. This can lead to information theft or unauthorized actions performed as other Junos Space users or administrators.
Recommendations For versions prior to 17.1R1, update to version 17.1R1 or later to resolve the issue.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-10612

Affected Products

Junos Space