Known Vulnerabilities for Advanced Threat Prevention by Juniper
Listed below are 10 of the newest known vulnerabilities associated with "Advanced Threat Prevention" by "Juniper".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2019-0027 | A persistent cross-site scripting (XSS) vulnerability in the Snort Rules configuration of Juniper ATP may allow authenticated... | 5.4 - MEDIUM | 2019-01-15 | 2019-10-09 |
| CVE-2019-0026 | A persistent cross-site scripting (XSS) vulnerability in the Zone configuration of Juniper ATP may allow authenticated user t... | 5.4 - MEDIUM | 2019-01-15 | 2019-10-09 |
| CVE-2019-0025 | A persistent cross-site scripting (XSS) vulnerability in RADIUS configuration menu of Juniper ATP may allow authenticated use... | 5.4 - MEDIUM | 2019-01-15 | 2019-10-09 |
| CVE-2019-0024 | A persistent cross-site scripting (XSS) vulnerability in the Email Collectors menu of Juniper ATP may allow authenticated use... | 5.4 - MEDIUM | 2019-01-15 | 2019-10-09 |
| CVE-2019-0023 | A persistent cross-site scripting (XSS) vulnerability in the Golden VM menu of Juniper ATP may allow authenticated user to in... | 5.4 - MEDIUM | 2019-01-15 | 2019-10-09 |
| CVE-2019-0022 | Juniper ATP ships with hard coded credentials in the Cyphort Core instance which gives an attacker the ability to take full c... | 9.8 - CRITICAL | 2019-01-15 | 2019-10-09 |
| CVE-2019-0021 | On Juniper ATP, secret passphrase CLI inputs, such as "set mcm", are logged to /var/log/syslog in clear text, allowing authen... | 5.5 - MEDIUM | 2019-01-15 | 2019-10-09 |
| CVE-2019-0020 | Juniper ATP ships with hard coded credentials in the Web Collector instance which gives an attacker the ability to take full ... | 9.8 - CRITICAL | 2019-01-15 | 2019-10-09 |
| CVE-2019-0018 | A persistent cross-site scripting (XSS) vulnerability in the file upload menu of Juniper ATP may allow an authenticated user ... | 5.4 - MEDIUM | 2019-01-15 | 2019-10-09 |
| CVE-2019-0004 | On Juniper ATP, the API key and the device key are logged in a file readable by authenticated local users. These keys are use... | 5.5 - MEDIUM | 2019-01-15 | 2020-09-29 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Juniper | Advanced Threat Prevention | 5.0 | All | All | All |