Описание
An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Juniper Networks Junos Space allows an attacker to store script tags directly in web pages that, when viewed by another user, enable the attacker to execute commands with the target's administrative permissions. This issue affects all versions of Junos Space before 24.1R4.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Одно из
EPSS
9 Critical
CVSS3
Дефекты
Связанные уязвимости
An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Juniper Networks Junos Space allows an attacker to store script tags directly in web pages that, when viewed by another user, enable the attacker to execute commands with the target's administrative permissions. This issue affects all versions of Junos Space before 24.1R4.
Уязвимость платформы управления сетевыми ресурсами Juniper Networks Junos Space, связанная с непринятием мер по защите структуры веб-страницы, позволяющая нарушителю выполнить произвольный код с правами администратора
EPSS
9 Critical
CVSS3