Vulnerabilities
Summary — last 7 days
New vulnerabilities2,568▼ 306 vs. last week
Critical / high1,351▲ 96 vs. last week
New active exploitation (KEV)5▼ 7 vs. last week
Unscored (no CVSS)62▼ 466 vs. last week
2 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Modified | Medium (5) | 0.74% | — | Juniper IVE OSJuniper Unified Access Control SoftwareJuniper Fips Infranet Controller 6500Juniper Fips Secure Access 4000+14 | 6/13/2014 | 6/17/2026 | The Juniper Junos Pulse Secure Access Service (SSL VPN) devices with IVE OS before 7.4r5 and 8.x before 8.0r1 and Junos Pulse Access Control Service (UAC) before 4.4r5 and 5.x before 5.0r1 enable cipher suites with weak encryption algorithms, which make it easier for remote attackers to obtain sensitive information by… | |
| Modified | Medium (4.3) | 0.93% | — | Juniper IVE OSJuniper Secure Access Virtual ApplianceJuniper Fips Secure Access 4000Juniper Fips Secure Access 4500+13 | 8/1/2013 | 6/16/2026 | Cross-site scripting (XSS) vulnerability in the help page in Juniper Secure Access (SA) with IVE OS before 7.1r13, 7.2.x before 7.2r7, and 7.3.x before 7.3r2 allows remote attackers to inject arbitrary web script or HTML via the WWHSearchWordsText parameter. |