Junos Space: Reflected Cross-site Scripting vulnerability in OpenNMS
CVE-2018-0046
8.8HIGH
Key Information:
- Vendor
- Juniper Networks
- Status
- Vendor
- CVE Published:
- 10 October 2018
Badges
๐พ Exploit Exists
Summary
A reflected cross-site scripting vulnerability in OpenNMS included with Juniper Networks Junos Space may allow the stealing of sensitive information or session credentials from Junos Space administrators or perform administrative actions. This issue affects Juniper Networks Junos Space versions prior to 18.2R1.
Affected Version(s)
Junos Space < 18.2R1
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
Collectors
NVD DatabaseMitre Database
Credit
Marcel Bilal of IT-Dienstleistungszentrum Berlin