CVE-2008-6096

Juniper NetScreen ScreenOS <5.4r10-6.1r2 - XSS

Title source: llm

Description

Cross-site scripting (XSS) vulnerability in Juniper NetScreen ScreenOS before 5.4r10, 6.0r6, and 6.1r2 allows remote attackers to inject arbitrary web script or HTML via the user name parameter to the (1) web interface login page or the (2) telnet login page.

Scores

EPSS 0.0029
EPSS Percentile 51.6%

Classification

CWE
CWE-79
Status published

Affected Products (50)

juniper/netscreen_screenos
juniper/netscreen_screenos < 5.4.0r9.0
juniper/netscreen_screenos
juniper/netscreen_screenos
juniper/netscreen_screenos
juniper/netscreen_screenos
juniper/netscreen_screenos
juniper/netscreen_screenos
juniper/netscreen_screenos
juniper/netscreen_screenos
juniper/netscreen_screenos
juniper/netscreen_screenos
juniper/netscreen_screenos
juniper/netscreen_screenos
juniper/netscreen_screenos
... and 35 more

Timeline

Published Feb 09, 2009
Tracked Since Feb 18, 2026