|
198641
|
8.0 |
HIGH
Network
|
juniper
|
junos_space
|
A persistent site scripting vulnerability in Juniper Networks Junos Space allows users who can change certain configuration to implant malicious Javascript or HTML which may be used to steal informat…
|
CWE-79
Cross-site Scripting
|
CVE-2017-10612
|
2024-11-21 12:06 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198642
|
5.3 |
MEDIUM
Network
|
juniper
|
junos
|
A denial of service vulnerability in telnetd service on Juniper Networks Junos OS allows remote unauthenticated attackers to cause a denial of service. Affected Junos OS releases are: 12.1X46 prior t…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2017-10621
|
2024-11-21 12:06 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198643
|
7.5 |
HIGH
Network
|
juniper
|
junos
|
When Express Path (formerly known as service offloading) is configured on Juniper Networks SRX1400, SRX3400, SRX3600, SRX5400, SRX5600, SRX5800 in high availability cluster configuration mode, certai…
|
NVD-CWE-noinfo
|
CVE-2017-10619
|
2024-11-21 12:06 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198644
|
5.9 |
MEDIUM
Network
|
juniper
|
junos
|
When the 'bgp-error-tolerance' feature â€" designed to help mitigate remote session resets from malformed path attributes â€" is enabled, a BGP UPDATE containing a specifically cr…
|
NVD-CWE-noinfo
|
CVE-2017-10618
|
2024-11-21 12:06 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198645
|
9.8 |
CRITICAL
Network
|
juniper
|
junos
|
A vulnerability in the pluggable authentication module (PAM) of Juniper Networks Junos OS may allow an unauthenticated network based attacker to potentially execute arbitrary code or crash daemons su…
|
CWE-20
Improper Input Validation
|
CVE-2017-10615
|
2024-11-21 12:06 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198646
|
5.5 |
MEDIUM
Local
|
juniper
|
junos
|
A vulnerability in a specific loopback filter action command, processed in a specific logical order of operation, in a running configuration of Juniper Networks Junos OS, allows an attacker with CLI …
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2017-10613
|
2024-11-21 12:06 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198647
|
5.9 |
MEDIUM
Network
|
juniper
|
junos
|
If extended statistics are enabled via 'set chassis extended-statistics', when executing any operation that fetches interface statistics, including but not limited to SNMP GET requests, the pfem proc…
|
NVD-CWE-noinfo
|
CVE-2017-10611
|
2024-11-21 12:06 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198648
|
5.9 |
MEDIUM
Network
|
juniper
|
junos
|
On SRX Series devices, a crafted ICMP packet embedded within a NAT64 IPv6 to IPv4 tunnel may cause the flowd process to crash. Repeated crashes of the flowd process constitutes an extended denial of …
|
CWE-20
Improper Input Validation
|
CVE-2017-10610
|
2024-11-21 12:06 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198649
|
7.5 |
HIGH
Network
|
juniper
|
junos
|
Any Juniper Networks SRX series device with one or more ALGs enabled may experience a flowd crash when traffic is processed by the Sun/MS-RPC ALGs. This vulnerability in the Sun/MS-RPC ALG services c…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2017-10608
|
2024-11-21 12:06 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198650
|
7.5 |
HIGH
Network
|
juniper
|
junos
|
Juniper Networks Junos OS 16.1R1, and services releases based off of 16.1R1, are vulnerable to the receipt of a crafted BGP Protocol Data Unit (PDU) sent directly to the router, which can cause the R…
|
NVD-CWE-noinfo
|
CVE-2017-10607
|
2024-11-21 12:06 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|