Skip to main content

Vendor/product archive

juniper / screenos CVEs

Beta · best-effort

16 CVEs tagged to juniper / screenos2 Critical, 10 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2018-0014

Published Jan 10, 2018

Juniper Networks ScreenOS devices do not pad Ethernet packets with zeros, and thus some packets can contain fragments of system memory or data from previous packets. This issue is…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-2339

Published Jul 17, 2017

A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN running ScreenOS allows a user with the 'security' role to in…

CVSS 8.4 · High
Vendor/product tagsBeta · best-effort

CVE-2017-2338

Published Jul 17, 2017

A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN running ScreenOS allows a user with the 'security' role to in…

CVSS 8.4 · High
Vendor/product tagsBeta · best-effort

CVE-2017-2337

Published Jul 17, 2017

A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN running ScreenOS allows a user with the 'security' role to in…

CVSS 8.4 · High
Vendor/product tagsBeta · best-effort

CVE-2017-2336

Published Jul 17, 2017

A reflected cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN running ScreenOS allows a network based attacker to inject HTM…

CVSS 9.6 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-2335

Published Jul 17, 2017

A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN running ScreenOS allows a user with the 'security' role to in…

CVSS 8.4 · High
Vendor/product tagsBeta · best-effort

CVE-2016-1268

Published Apr 15, 2016

The administrative web services interface in Juniper ScreenOS before 6.3.0r21 allows remote attackers to cause a denial of service (reboot) via a crafted SSL packet.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2015-7754

Published Jan 8, 2016

Juniper ScreenOS before 6.3.0r21, when ssh-pka is configured and enabled, allows remote attackers to cause a denial of service (system crash) or execute arbitrary code via crafted…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2015-7756

Published Dec 19, 2015

The encryption implementation in Juniper ScreenOS 6.2.0r15 through 6.2.0r18, 6.3.0r12 before 6.3.0r12b, 6.3.0r13 before 6.3.0r13b, 6.3.0r14 before 6.3.0r14b, 6.3.0r15 before 6.3.0…

CVSS 5.0 · Medium
evidence mentions
10
Buzz score
32.0
Vendor/product tagsBeta · best-effort

CVE-2015-7755

Published Dec 19, 2015

Juniper ScreenOS 6.2.0r15 through 6.2.0r18, 6.3.0r12 before 6.3.0r12b, 6.3.0r13 before 6.3.0r13b, 6.3.0r14 before 6.3.0r14b, 6.3.0r15 before 6.3.0r15b, 6.3.0r16 before 6.3.0r16b,…

CVSS 9.8 · Critical
evidence mentions
15
Buzz score
60.7
KEV listed
Vendor/product tagsBeta · best-effort

CVE-2015-7750

Published Oct 19, 2015

The L2TP packet processing functionality in Juniper Netscreen and ScreenOS Firewall products with ScreenOS before 6.3.0r13-dnd1, 6.3.0r14 through 6.3.0r18 before 6.3.0r18-dnc1, an…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-2842

Published Apr 15, 2014

Juniper ScreenOS 6.3 and earlier allows remote attackers to cause a denial of service (crash and restart or failover) via a malformed SSL/TLS packet.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2013-7313

Published Jan 23, 2014

The OSPF implementation in Juniper Junos through 13.x, JunosE, and ScreenOS through 6.3.x does not consider the possibility of duplicate Link State ID values in Link State Adverti…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-16 of 16 CVEsPage 1 of 1