CVE-2018-0046
Junos Space: Reflected Cross-site Scripting vulnerability in OpenNMS
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 8.8EPSS 1.6%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
10 Oct 2018Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A reflected cross-site scripting vulnerability in OpenNMS included with Juniper Networks Junos Space may allow the stealing of sensitive information or session credentials from Junos Space administrators or perform administrative actions. This issue affects Juniper Networks Junos Space versions prior to 18.2R1.
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Affected products
Juniper Networks · Junos SpaceWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →