Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Juniper Networks | Junos Space | 0 ~ 24.1R4 | - |
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-59978 | 9.0 CRITICAL | Junos Space: Stored cross-site scripting vulnerability in web application |
| CVE-2025-59968 | 8.6 HIGH | Junos Space Security Director: Insufficient authorization for sensitive resources in web i |
| CVE-2025-59974 | 8.4 HIGH | Junos Space Security Director: Persistent Cross-Site Scripting (XSS) vulnerability |
| CVE-2025-59975 | 7.5 HIGH | Junos Space: Flooding device with inbound API calls leads to WebUI and CLI management acce |
| CVE-2025-60004 | 7.5 HIGH | Junos OS and Junos OS Evolved: Specific BGP EVPN update message causes rpd crash |
| CVE-2025-59964 | 7.5 HIGH | Junos OS: SRX4700: When forwarding-options sampling is enabled any traffic destined to the |
| CVE-2025-11198 | 7.4 HIGH | Security Director Policy Enforcer: An unrestricted API allows a network-based unauthentica |
| CVE-2025-59957 | 6.8 MEDIUM | Junos OS: EX4600 Series and QFX5000 Series: An attacker with physical access can open a pe |
| CVE-2025-59967 | 6.5 MEDIUM | Junos OS Evolved: ACX7024, ACX7024X, ACX7100-32C, ACX7100-48L, ACX7348, ACX7509: When spe |
| CVE-2025-59958 | 6.5 MEDIUM | Junos OS Evolved: PTX Series: When a firewall filter rejects traffic these packets are err |
| CVE-2025-52961 | 6.5 MEDIUM | Junos OS Evolved: PTX Series except PTX10003: An unauthenticated adjacent attacker sending |
| CVE-2025-59976 | 6.5 MEDIUM | Junos Space: Arbitrary file download vulnerability in web interface |
| CVE-2025-59980 | 6.5 MEDIUM | Junos OS: When a user with the name ftp or anonymous is configured unauthenticated filesys |
| CVE-2025-59987 | 6.1 MEDIUM | Junos Space: The arbitrary device search field is vulnerable to reflected cross-site scrip |
| CVE-2025-59981 | 6.1 MEDIUM | Junos Space: Device Template Definition page is vulnerable to reflected cross-site script |
| CVE-2025-59982 | 6.1 MEDIUM | Junos Space: Dashboard Search field is vulnerable to reflected cross-site script injection |
| CVE-2025-59983 | 6.1 MEDIUM | Junos Space: Template Definition page is vulnerable to reflected cross-site script injecti |
| CVE-2025-59984 | 6.1 MEDIUM | Junos Space: Global Search is vulnerable to reflected cross-site script injection |
| CVE-2025-59986 | 6.1 MEDIUM | Junos Space: Input fields in Model Devices are vulnerable to reflected cross-site script i |
| CVE-2025-59997 | 6.1 MEDIUM | Junos Space: Fields in the CLI Configlets are vulnerable to reflected cross-site script in |
Showing top 20 of 40 CVEs. View all on vendor page → →
No comments yet