Buffer overflow in NetScreen Firewall WebUI allows remote attackers to cause a denial of service via a long URL request to the web administration interface.
CVSS 2.0
Severity: MEDIUM
Problem Type: NVD-CWE-Other,
Products Affected
| Vendor | Product | Version |
|---|---|---|
| netscreen | screen_os | 2.5r1 |
| netscreen | screen_os | 2.10r3 |
| netscreen | screen_os | 1.73r |
| netscreen | screen_os | 2.1r6 |
NetScreen ScreenOS before 4.0.1 allows remote attackers to bypass the Malicious-URL blocking feature by splitting the URL into fragmented IP requests.
CVSS 2.0
Severity: MEDIUM
Problem Type: CWE-16,
Products Affected
| Vendor | Product | Version |
|---|---|---|
| netscreen | screenos | 2.8 |
| netscreen | screenos | 2.7.1 |
| netscreen | screenos | 3.1 |
| netscreen | screenos | 3.0 |
| netscreen | screenos | 4.0 |
NetScreen ScreenOS 2.8 through 4.0, when forwarding H.323 or Netmeeting traffic, allows remote attackers to cause a denial of service (firewall session table consumption) by establishing multiple half-open H.323 sessions, which are not cleaned up on garbage removal and do not time out for 36 hours.
CVSS 2.0
Severity: MEDIUM
Problem Type: NVD-CWE-Other,
Products Affected
| Vendor | Product | Version |
|---|---|---|
| netscreen | screenos | 2.8 |
| netscreen | screenos | 3.1 |
| netscreen | screenos | 3.0 |
| netscreen | screenos | 4.0 |
Cross-site scripting (XSS) vulnerability in delhomepage.cgi in NetScreen-SA 5000 Series running firmware 3.3 Patch 1 (build 4797) allows remote authenticated users to execute arbitrary script as other users via the row parameter.
CVSS 2.0
Severity: MEDIUM
Problem Type: NVD-CWE-Other,
Products Affected
| Vendor | Product | Version |
|---|---|---|
| netscreen | netscreen-sa_5000_series | * |
Behavioral discrepancy information leak in Juniper Netscreen VPN running ScreenOS 5.2.0 and earlier, when using IKE with pre-shared key authentication, allows remote attackers to enumerate valid usernames via an IKE Aggressive Mode packet, which generates a response if the username is valid but does not respond when the username is invalid.
CVSS 2.0
Severity: MEDIUM
Problem Type: NVD-CWE-Other,
Products Affected
| Vendor | Product | Version |
|---|---|---|
| juniper | netscreen_screenos | 4.0.3r2 |
| juniper | netscreen_screenos | 3.0.1r3 |
| juniper | netscreen_screenos | 4.0.0r6 |
| juniper | netscreen_screenos | 2.6.1r6 |
| juniper | netscreen_screenos | 4.0.1r10 |
| juniper | netscreen_screenos | 2.6.1 |
| juniper | netscreen_screenos | 4.0.1r5 |
| juniper | netscreen-idp | 3.0 |
| juniper | netscreen_screenos | 3.0.0r1 |
| juniper | netscreen_screenos | 2.5r1 |
| juniper | netscreen_screenos | 4.0.1r7 |
| juniper | netscreen_screenos | 5.2.0 |
| juniper | netscreen_screenos | 1.7 |
| juniper | netscreen_screenos | 4.0.0r2 |
| juniper | netscreen_screenos | 3.0.0r2 |
| juniper | netscreen_screenos | 3.0.2 |
| juniper | netscreen_screenos | 3.0.3r2 |
| juniper | netscreen_screenos | 4.0.3r4 |
| netscreen | ns-500 | 4110.0_11_4.0_r10.0 |
| neoteris | instant_virtual_extranet | 3.2 |
| neoteris | instant_virtual_extranet | 3.3 |
| juniper | netscreen_screenos | 4.0.0r11 |
| juniper | netscreen_screenos | 1.64 |
| juniper | netscreen_screenos | 3.1.0r11 |
| juniper | netscreen-idp_500 | 3.0.1_r1 |
| juniper | netscreen_screenos | 3.1.0r8 |
| juniper | netscreen_screenos | 5.1.0 |
| netscreen | ns-100 | 3.0_.pe1.0 |
| neoteris | instant_virtual_extranet | 3.0 |
| juniper | netscreen_screenos | 2.7.1r2 |
| juniper | netscreen_screenos | 3.1.0r4 |
| juniper | netscreen_screenos | 3.1.0r5 |
| juniper | netscreen_screenos | 2.6.1r3 |
| neoteris | instant_virtual_extranet | 3.3.1 |
| juniper | netscreen_screenos | 3.0.3r4 |
| juniper | netscreen_screenos | 3.0.0r3 |
| netscreen | ns-204 | 5.0.0_r6.0 |
| juniper | netscreen_screenos | 2.6.1r9 |
| juniper | netscreen_screenos | 3.0.3r5 |
| netscreen | netscreen-sa_5020_series | 4.2_r2.2 |
| juniper | netscreen_screenos | 3.0.3 |
| juniper | netscreen_screenos | 4.0.3r3 |
| juniper | netscreen_screenos | 2.6.1r7 |
| juniper | netscreen_screenos | 3.0.3r6 |
| juniper | netscreen_screenos | 4.0.1r2 |
| juniper | netscreen_screenos | 2.7.1 |
| juniper | netscreen_screenos | 2.8 |
| juniper | netscreen_screenos | 4.0.0r1 |
| netscreen | netscreen-sa_5050_series | 4.2_r2.2 |
| juniper | netscreen_screenos | 2.6.1r4 |
| juniper | netscreen_screenos | 4.0.1r3 |
| juniper | netscreen_screenos | 3.1.0 |
| netscreen | ns-204 | 0110.0_11_4.0_r10.0 |
| juniper | netscreen_screenos | 5.0.0 |
| juniper | netscreen_screenos | 2.10_r3 |
| juniper | netscreen_screenos | 3.0.0 |
| juniper | netscreen_screenos | 4.0.0r10 |
| juniper | netscreen_screenos | 3.1.0r9 |
| juniper | netscreen-idp | 3.0r2 |
| juniper | netscreen-idp | 3.0r1 |
| juniper | netscreen_screenos | 4.0.1r8 |
| juniper | netscreen_screenos | 1.66 |
| juniper | netscreen_screenos | 2.6.1r5 |
| juniper | netscreen_screenos | 3.1.0r6 |
| juniper | netscreen_screenos | 2.5r2 |
| juniper | netscreen_screenos | 3.0.1r1 |
| juniper | netscreen_screenos | 3.1.0r2 |
| neoteris | instant_virtual_extranet | 3.1 |
| juniper | netscreen_screenos | 3.1.0r7 |
| juniper | netscreen_screenos | 2.7.1r1 |
| juniper | netscreen_screenos | 3.0.1r6 |
| juniper | netscreen_screenos | 3.1.0r10 |
| juniper | netscreen_screenos | 5.1.0r3a |
| netscreen | ns-50ns25 | 5.0.0_r6.0 |
| juniper | netscreen-5gt | 5.0 |
| juniper | netscreen_screenos | 3.0.1r4 |
| juniper | netscreen_screenos | 2.0.1_r8 |
| juniper | netscreen_screenos | 2.7.1r3 |
| juniper | netscreen_screenos | 1.73_r2 |
| juniper | netscreen_screenos | 4.0.1r6 |
| juniper | netscreen-idp_1000 | 3.0.1_r1 |
| juniper | netscreen_screenos | 1.66_r2 |
| juniper | netscreen_screenos | 4.0.0r7 |
| juniper | netscreen_screenos | 4.0.0r4 |
| juniper | netscreen_screenos | 2.1_r7 |
| juniper | netscreen_screenos | 2.8_r1 |
| juniper | netscreen_screenos | 2.6.1r12 |
| juniper | netscreen_screenos | 4.0.0r8 |
| juniper | netscreen_screenos | 4.0.1r4 |
| juniper | netscreen_screenos | 4.0.0r3 |
| juniper | netscreen_screenos | 2.6.0 |
| netscreen | netscreen-sa_5000_series | * |
| juniper | netscreen_screenos | 3.0.1 |
| juniper | netscreen_screenos | 2.5 |
| juniper | netscreen_screenos | 2.1_r6 |
| juniper | netscreen_screenos | 3.1.0r3 |
| juniper | netscreen_screenos | 4.0.0r12 |
| juniper | netscreen_screenos | 3.0.3r7 |
| juniper | netscreen_screenos | 4.0.1r1 |
| juniper | netscreen_screenos | 1.73_r1 |
| juniper | netscreen_screenos | 3.1.0r12 |
| juniper | netscreen_screenos | 4.0.3r1 |
| juniper | netscreen_screenos | 2.6.1r8 |
| juniper | netscreen_screenos | 3.0.3r1 |
| juniper | netscreen_screenos | 4.0.0r5 |
| juniper | netscreen_screenos | 3.0.1r2 |
| juniper | netscreen_screenos | 2.6.1r10 |
| juniper | netscreen_screenos | 3.0.3r3 |
| juniper | netscreen_screenos | 3.1.1_r2 |
| juniper | netscreen_screenos | 2.10_r4 |
| juniper | netscreen_screenos | 3.0.1r7 |
| juniper | netscreen_screenos | 4.0.1r9 |
| juniper | netscreen_screenos | 2.5r6 |
| juniper | netscreen_screenos | 2.6.1r11 |
| juniper | netscreen_screenos | 3.1.0r1 |
| juniper | netscreen_screenos | 4.0.1 |
| juniper | netscreen_screenos | 4.0.2 |
| juniper | netscreen_screenos | 3.0.1r5 |
| juniper | netscreen_screenos | 4.0.0 |
| netscreen | ns-204 | 0110.0_11_5.1.0_r3a |
| juniper | netscreen-idp_10 | 3.0.1_r1 |
| juniper | netscreen_screenos | 2.6.1r1 |
| juniper | netscreen-idp_100 | 3.0.1_r1 |
| juniper | netscreen_screenos | 3.0.0r4 |
| juniper | netscreen_screenos | 2.1 |
| netscreen | ns-10 | * |
| juniper | netscreen_screenos | 2.6.1r2 |
| juniper | netscreen_screenos | 4.0.3 |
| juniper | netscreen_screenos | 3.0.3_r1.1 |
| netscreen | ns-500 | 4110.0_11_5.1.0_r3a |
| juniper | netscreen_screenos | 3.0.3r8 |
| juniper | netscreen_screenos | 4.0.0r9 |