Vulnerability Description
A reflected cross site scripting (XSS) vulnerability in Junos Space may potentially allow a remote authenticated user to inject web script or HTML and steal sensitive data and credentials from a session, and to perform administrative actions on the Junos Space network management device.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Juniper | Junos Space | 13.3 |
Related Weaknesses (CWE)
References
- http://www.securitytracker.com/id/1040189Third Party AdvisoryVDB Entry
- https://kb.juniper.net/JSA10838PatchVendor Advisory
- http://www.securitytracker.com/id/1040189Third Party AdvisoryVDB Entry
- https://kb.juniper.net/JSA10838PatchVendor Advisory
FAQ
What is CVE-2018-0011?
CVE-2018-0011 is a vulnerability with a CVSS score of 5.4 (MEDIUM). A reflected cross site scripting (XSS) vulnerability in Junos Space may potentially allow a remote authenticated user to inject web script or HTML and steal sensitive data and credentials from a sessi...
How severe is CVE-2018-0011?
CVE-2018-0011 has been rated MEDIUM with a CVSS base score of 5.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2018-0011?
Check the references section above for vendor advisories and patch information. Affected products include: Juniper Junos Space.