Secunia Security Advisory - A vulnerability has been reported in Juniper IVE OS, which can be exploited by malicious people to conduct cross-site scripting attacks.
7f884b12f5f4efc3902b24953f5e7d5aSecunia Security Advisory - A vulnerability has been reported in Juniper IVE OS, which can be exploited by malicious people to conduct cross-site scripting attacks.
60427941d3dc869649f7b3635ffbd356Secunia Security Advisory - A vulnerability has been reported in Juniper Junos, which can be exploited by malicious people to bypass certain security restrictions.
777cb469cbeb9ac894f8bbaedbc3a331Secunia Security Advisory - A vulnerability has been reported in Juniper Junos, which can be exploited by malicious people to cause a DoS (Denial of Service).
31c1851970fdf294df492484302fbf35An ICMPv6 router announcement flooding denial of service vulnerability affects multiple systems including Cisco, Juniper, Microsoft, and FreeBSD. Cisco has addressed the issue but Microsoft has decided to ignore it.
f9b4dca38772e20b8831879129a179baSecunia Security Advisory - A vulnerability has been reported in Juniper Networks Secure Access, which can be exploited by malicious people to bypass certain security restrictions.
bf4d770369728a9200712367f244c212Juniper VPN client with remote desktop lets an attacking spawn Internet Explorer prior to authentication.
0333e86622746f8572e53c7115b95635Secunia Security Advisory - A vulnerability has been reported in Juniper IVE OS, which can be exploited by malicious people to conduct cross-site scripting attacks.
6370d7f2e46fd73a552878c4f5abce0bThis is a list of older cross site scripting and bypass vulnerabilities associated with older Juniper IVE releases.
7a4246773f02b62f12f3b55f5d6a30e8Zero Day Initiative Advisory 10-231 - This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Juniper SA Series devices. Authentication is not required to exploit this vulnerability. The specific flaw exists within the meeting_testjava.cgi page which is used to test JVM compatibility. When handling the DSID HTTP header the code allows an attacker to inject arbitrary javascript into the page. This can be abused by an attacker to perform a cross-site scripting attack on the device.
e1db201e6c5dec0d564680e5ccdbe72cSecunia Security Advisory - Richard Brain has reported a vulnerability in Juniper IVE, which can be exploited by malicious people to conduct cross-site scripting attacks.
fe4b1d27b0f846c6cacbcb9c2069c8c4Procheckup has found by making a malformed request to the Juniper IVE Web interface without authentication, that a vanilla cross site scripting (XSS) attack is possible.
f6fb4247d33cbd7d25d097d83da3d5c1Secunia Security Advisory - Richard Brain has reported a weakness in Juniper IVE OS, which can be exploited by malicious people to conduct redirection attacks.
255713790c3038f759232b231f05a954The Juniper SRX suffers from a dual-homed swapfile overflow error that can cause denial of service conditions.
4b2dc8e18523538f84e8b386bc258691Secunia Security Advisory - Niels Heinen has reported a vulnerability in Juniper Networks Secure Access, which can be exploited by malicious people to conduct cross-site scripting attacks.
1725b49f2c3e818d7e0c02c6d813b346Juniper Secure Access suffers from a cross site scripting vulnerability. SA Appliances running Juniper IVE OS 6.0 or higher are affected.
9b36886cd72016decdf7d91f17eadadcSecunia Security Advisory - A vulnerability has been reported in Juniper Networks Installer Service, which can be exploited by malicious people to compromise a vulnerable system.
b6998ec94d2ba636687fed4b684d1d11Secunia Security Advisory - A vulnerability has been reported in Juniper Networks Secure Access, which can be exploited by malicious people to bypass certain security restrictions.
08d355b6766feaecfe45d73d293a772aThis Metasploit module exploits a stack overflow in the JuniperSetupDLL.dll library which is called by the JuniperSetup.ocx ActiveX control, as part of the Juniper SSL-VPN (IVE) appliance. By specifying an overly long string to the ProductName object parameter, the stack is overwritten.
d2a55a7759653c192c9deda8b760dabdThis Metasploit module exploits a stack overflow in Safenet SoftRemote IKE IreIKE.exe service. When sending a specially crafted udp packet to port 62514 an attacker may be able to execute arbitrary code. This Metasploit module has been tested with Juniper NetScreen-Remote 10.8.0 (Build 20) using windows/meterpreter/reverse_ord_tcp payloads.
693347c05eeaf84f2c8e0f1db86d4c61Secunia Security Advisory - Some vulnerabilities have been reported in Juniper JUNOS, which can be exploited by malicious people to conduct cross-site scripting attacks and by malicious users to conduct script insertion attacks.
f3bc6e9c52f143957d44fd92a402b31eSecunia Security Advisory - A vulnerability has been reported in multiple Juniper Networks products, which can be exploited by malicious people to manipulate the router's neighbor cache.
b296911b2c5b74ed7b6d4e147f2b6ed9Layered Defense Research Advisory - The Juniper Netscreen firewall NetOS version 5.4.0r9.0 suffers from a cross site scripting vulnerability.
980859c903b74880d278edecfa19fc6cSecunia Security Advisory - A vulnerability has been reported in Juniper NetScreen ScreenOS, which can be exploited by malicious people to conduct script insertion attacks.
6a76b3d1cb358ef656fca56f7efd5686Secunia Security Advisory - A vulnerability has been reported in various Juniper Network products, which can be exploited by malicious people to poison the DNS cache.
64a9c23e8e10bd21921257331ae68792