← Back

CVE-2014-6447

nvd nist
Published: Feb 11, 2020Modified: Nov 21, 2024

JSON object

Loading...
7.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L
Exploitability: 2.8 / Impact: 3.7
Source: NVD

Description

Multiple vulnerabilities exist in Juniper Junos J-Web error handling that may lead to cross site scripting (XSS) issues or crash the J-Web service (DoS). This affects Juniper Junos OS 12.1X44 before 12.1X44-D45, 12.1X46 before 12.1X46-D30, 12.1X47 before 12.1X47-D20, 12.3 before 12.3R8, 12.3X48 before 12.3X48-D10, 13.1 before 13.1R5, 13.2 before 13.2R6, 13.3 before 13.3R4, 14.1 before 14.1R3, 14.1X53 before 14.1X53-D10, 14.2 before 14.2R1, and 15.1 before 15.1R1.

Affected (49)

Products: Juniper: Junos
1 product
Junos
Configuration A
8 vulnerable
Vulnerable SoftwareAffected Versions
Juniper
Version 12.1x44
Version 12.1x44 d10
Version 12.1x44 d15
Version 12.1x44 d20
Version 12.1x44 d25
Version 12.1x44 d30
Version 12.1x44 d35
Version 12.1x44 d40
Configuration B
5 vulnerable
Vulnerable SoftwareAffected Versions
Juniper
Version 12.1x46
Version 12.1x46 d10
Version 12.1x46 d15
Version 12.1x46 d20
Version 12.1x46 d25
Configuration C
3 vulnerable
Vulnerable SoftwareAffected Versions
Juniper
Version 12.1x47
Version 12.1x47 d10
Version 12.1x47 d15
Configuration D
8 vulnerable
Vulnerable SoftwareAffected Versions
Juniper
Version 12.3
Version 12.3 r1
Version 12.3 r2
Version 12.3 r3
Version 12.3 r4
Version 12.3 r5
Version 12.3 r6
Version 12.3 r7
Configuration E
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 12.3x48
Configuration F
6 vulnerable
Vulnerable SoftwareAffected Versions
Juniper
Version 13.1
Version 13.1 r1
Version 13.1 r2
Version 13.1 r3
Version 13.1 r4-s2
Version 13.1 r4
Configuration G
6 vulnerable
Vulnerable SoftwareAffected Versions
Juniper
Version 13.2
Version 13.2 r1
Version 13.2 r2
Version 13.2 r3
Version 13.2 r4
Version 13.2 r5
Configuration H
6 vulnerable
Vulnerable SoftwareAffected Versions
Juniper
Version 13.3
Version 13.3 r10
Version 13.3 r1
Version 13.3 r2-s2
Version 13.3 r2
Version 13.3 r3
Configuration I
3 vulnerable
Vulnerable SoftwareAffected Versions
Juniper
Version 14.1
Version 14.1 r1
Version 14.1 r2
Configuration J
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 14.1x53
Configuration K
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 14.2
Configuration L
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 15.1

References (4)

Source: cve@mitre.org
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry

Timeline

No history available yet.