Vulnerabilities > Juniper > Netscreen Screenos > Low

DATE CVE VULNERABILITY TITLE RISK
2018-10-10 CVE-2018-0059 Cross-site Scripting vulnerability in Juniper Netscreen Screenos
A persistent cross-site scripting vulnerability in the graphical user interface of ScreenOS may allow a remote authenticated user to inject web script or HTML and steal sensitive data and credentials from a web administration session, possibly tricking a follow-on administrative user to perform administrative actions on the device.
network
juniper CWE-79
3.5
2002-05-29 CVE-2002-0234 Unspecified vulnerability in Juniper Netscreen Screenos
NetScreen ScreenOS before 2.6.1 does not support a maximum number of concurrent sessions for a system, which allows an attacker on the trusted network to cause a denial of service (resource exhaustion) via a port scan to an external network, which consumes all available connections.
local
low complexity
juniper
2.1
2001-08-22 CVE-2001-0589 Unspecified vulnerability in Juniper Netscreen Screenos
NetScreen ScreenOS prior to 2.5r6 on the NetScreen-10 and Netscreen-100 can allow a local attacker to bypass the DMZ 'denial' policy via specific traffic patterns.
local
low complexity
juniper
2.1