A persistent site scripting vulnerability in Juniper Networks Junos Space allows users who can change certain configuration to implant malicious Javascript or HTML which may be used to steal information or perform actions as other Junos Space users or administrators. Affected releases are Juniper Networks Junos Space all versions prior to 17.1R1.
                
            References
                    | Link | Resource | 
|---|---|
| http://www.securityfocus.com/bid/101256 | Third Party Advisory VDB Entry | 
| https://kb.juniper.net/JSA10826 | Vendor Advisory | 
| http://www.securityfocus.com/bid/101256 | Third Party Advisory VDB Entry | 
| https://kb.juniper.net/JSA10826 | Vendor Advisory | 
Configurations
                    History
                    No history.
Information
                Published : 2017-10-13 17:29
Updated : 2025-04-20 01:37
NVD link : CVE-2017-10612
Mitre link : CVE-2017-10612
CVE.ORG link : CVE-2017-10612
JSON object : View
Products Affected
                juniper
- junos_space
CWE
                
                    
                        
                        CWE-79
                        
            Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
