Release date:
Updated on:
Affected Systems:
Juniper Networks JUNOS 13.x
Juniper Networks JUNOS 12.x
Juniper Networks JUNOS 11.x
Description:
--------------------------------------------------------------------------------
CVE (CAN) ID: CVE-2014-2711
Junos is an application development platform or network operating system used in the Juniper Networks hardware system.
Juniper JunOS does not properly filter some input used in J-Web, which can cause arbitrary HTML and script code to be inserted and then executed in the affected site user's browser.
<* Source: Chuck mculey
Link: http://secunia.com/advisories/57788/
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Juniper Networks
----------------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://kb.juniper.net/InfoCenter
Https://kb.juniper.net/InfoCenter/index? Page = content & id = jsa51119