Show plain JSON{"id": "CVE-2014-3820", "cveTags": [], "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 4.3, "accessVector": "NETWORK", "vectorString": "AV:N/AC:M/Au:N/C:N/I:P/A:N", "authentication": "NONE", "integrityImpact": "PARTIAL", "accessComplexity": "MEDIUM", "availabilityImpact": "NONE", "confidentialityImpact": "NONE"}, "acInsufInfo": false, "impactScore": 2.9, "baseSeverity": "MEDIUM", "obtainAllPrivilege": false, "exploitabilityScore": 8.6, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": true}]}, "published": "2014-09-29T14:55:08.720", "references": [{"url": "http://www.securitytracker.com/id/1030852", "source": "cve@mitre.org"}, {"url": "https://kb.juniper.net/InfoCenter/index?page=content&id=JSA10645", "tags": ["Vendor Advisory"], "source": "cve@mitre.org"}], "vulnStatus": "Analyzed", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "CWE-79"}]}], "descriptions": [{"lang": "en", "value": "Cross-site scripting (XSS) vulnerability in the SSL VPN/UAC web server in the Juniper Junos Pulse Secure Access Service (SSL VPN) devices with IVE OS 7.1 before 7.1r16, 7.4 before 7.4r3, and 8.0 before 8.0r1 and the Juniper Junos Pulse Access Control Service devices with UAC OS 4.1 before 4.1r8, 4.4 before 4.4r3 and 5.0 before 5.0r1 allows remote administrators to inject arbitrary web script or HTML via unspecified vectors."}, {"lang": "es", "value": "Vulnerabilidad de XSS en el servidor web SSL VPN/UAC en los dispositivos Juniper Junos Pulse Secure Access Service (SSL VPN) con IVE OS 7.1 anterior a 7.1r16, 7.4 anterior a 7.4r3, y 8.0 anterior a 8.0r1 y los dispositivos Juniper Junos Pulse Access Control Service con UAC OS 4.1 anterior a 4.1r8, 4.4 anterior a 4.4r3 y 5.0 anterior a 5.0r1 permite a administradores remotos inyectar secuencias de comandos web o HTML arbitrarios a trav\u00e9s de vectores no especificados."}], "lastModified": "2016-04-01T18:47:52.030", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:juniper:junos_pulse_access_control_service:4.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E19A150B-30A6-4C86-86EE-DD010C707607"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_access_control_service:4.1r1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "42FFCBD4-D611-40FB-9EC0-FD7514D3E4D9"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_access_control_service:4.1r1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9ECFCA72-04D6-441D-9167-F549293C26A4"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_access_control_service:4.1r2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "538BDA70-3F06-4AAE-9ACA-DF4C776DE19E"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_access_control_service:4.1r3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D5EBC04E-16D9-4DC0-B0A9-A99527B5FA11"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_access_control_service:4.1r4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C21197A5-8BDA-4FDB-9AC3-703715AA4F52"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_access_control_service:4.1r5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9C00A34F-1E90-4E81-AFDE-02A1D059A24C"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_access_control_service:4.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1539B994-2F09-43E8-9854-4A41585F0513"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_access_control_service:4.4:r1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3AEABC77-6BCF-4D8B-86FA-74E7B384914A"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_access_control_service:4.4:r2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BE20B878-7344-455C-AB6F-12E0C9C126DD"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_access_control_service:5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2654EEEA-B9FA-4717-8498-0E4A49B5E058"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:7.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DE0C8957-0870-4070-AAD3-720EE46311EA"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:7.1r1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "47A21AF8-2618-4C7F-B250-BEDBBE9BE7F9"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:7.1r1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6386D17E-158E-4F5E-B0C7-7719D0020CBF"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:7.1r2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F3C2B970-9EF2-40CE-86B4-B3FF8F788BC6"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:7.1r3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7B3A469E-C3EA-4A34-BCAB-CA18DFB245C4"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:7.1r4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "601BEBCC-F133-40FB-A1B8-599889D05480"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:7.1r5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5DFCB2A6-FFF0-4108-B587-C27FB96FD75A"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:7.1r6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A381B35A-750E-4E70-99DA-25C4837C9DDC"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:7.1r7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4D2E937F-6235-4040-ADAF-884304C7D65C"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:7.1r8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F3921140-1DDB-416E-9DC6-BB097C339A36"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:7.1r9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "36F6EE11-D19C-43DD-AFB8-D8AE60B5692F"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:7.1r10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "810ABC69-F219-4060-A50E-5A9D531BF26A"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:7.1r11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "48CE0C3C-6E83-47DD-8FB0-45CA7C3B343B"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:7.1r12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0EF9BD90-90D8-4617-8BB7-9AA7FFCC1160"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:7.1r13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EBA1D6B0-E878-4364-83C5-FB6FB7C6B93E"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:7.1r14:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BCD9F89E-5AFB-4B80-B615-6E4720FA8A57"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:7.1r15:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "134E62A7-0E1E-453B-AE43-EFF7BA700658"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:7.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2CA1CB31-3514-480E-ADD0-B8415B379754"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:7.4:r1.0:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C503F416-17B4-45DA-9E36-9A8B14C2DEC4"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:7.4:r2.0:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ECDD185D-A088-43A4-B4DE-599D22F1642C"}, {"criteria": "cpe:2.3:a:juniper:junos_pulse_secure_access_service:8.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B390A8A0-D317-4EDE-9B1F-2CC53DC72C06"}], "operator": "OR"}]}], "sourceIdentifier": "cve@mitre.org"}