Junos Space: Reflected Cross-site Scripting vulnerability in OpenNMS
CVE-2018-0046

8.8HIGH

Key Information:

Vendor
CVE Published:
10 October 2018

Badges

๐Ÿ‘พ Exploit Exists

Summary

A reflected cross-site scripting vulnerability in OpenNMS included with Juniper Networks Junos Space may allow the stealing of sensitive information or session credentials from Junos Space administrators or perform administrative actions. This issue affects Juniper Networks Junos Space versions prior to 18.2R1.

Affected Version(s)

Junos Space < 18.2R1

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • ๐Ÿ‘พ

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

Collectors

NVD DatabaseMitre Database

Credit

Marcel Bilal of IT-Dienstleistungszentrum Berlin
.