Known vulnerabilities in Juniper Secure Analytics (JSA) 7.5.0 UP10 - page 3

Version: 7.5.0 UP10
Software CPE: cpe:2.3:a:juniper_networks:jsa:*:*:*:*:*:*:*:*
Total vulnerabilities: 89
Public exploits: 7
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Juniper Secure Analytics (JSA) version 7.5.0 UP10 Juniper Secure Analytics (JSA) 7.5.0 UP10 is affected by 89 vulnerabilities: 1 critical, 8 high, 23 medium, 57 low Critical High Medium Low

Vulnerabilities (89)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU117682 - Resource exhaustion
CVE-2025-61795
CWE-400 Medium
No
No
7.5.0 UP14 IF01 27.10.2025 SB2025102749
SB20251031122
SB20251031123
and 39 more
#VU117681 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-55752
CWE-22 High
Public exploit available
No
7.5.0 UP14 IF01 27.10.2025 SB2025102748
SB20251031122
SB20251031123
and 43 more
#VU114833 - Improper Locking
CVE-2025-38718
CWE-667 Low
No
No
7.5.0 UP14 IF01 05.09.2025 SB2025090504
SB2025092902
SB2025092927
and 53 more
#VU114254 - Out-of-bounds read
CVE-2025-38556
CWE-125 Low
No
No
7.5.0 UP14 IF01 20.08.2025 SB2025082042
SB2025091305
SB2025092303
and 55 more
#VU114133 - Use After Free
CVE-2025-38527
CWE-416 Low
No
No
7.5.0 UP14 IF01 18.08.2025 SB2025081814
SB2025092902
SB2025092923
and 61 more
#VU113040 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2025-33097
CWE-79 Low
No
No
7.5.0 UP12 IF03 18.07.2025 SB2025071820
SB2025080836
#VU112995 - NULL Pointer Dereference
CVE-2025-6395
CWE-476 Medium
No
No
7.5.0 UP14 IF01 16.07.2025 SB20250716122
SB20250716124
SB20250716141
and 70 more
#VU112132 - Stack-based buffer overflow
CVE-2025-4447
CWE-121 Medium
No
No
7.5.0 UP12 IF03 03.07.2025 SB2025070315
SB2025070316
SB2025070319
and 54 more
#VU111484 - Out-of-bounds read
CVE-2022-49985
CWE-125 Low
No
No
7.5.0 UP14 IF01 19.06.2025 SB20250619209
SB2025072897
SB20250908110
and 10 more
#VU111165 - Improper Access Control
CVE-2025-48734
CWE-284 Medium
No
No
7.5.0 UP12 IF03 16.06.2025 SB2025061643
SB2025061644
SB2025061645
and 141 more
#VU111161 - Resource exhaustion
CVE-2025-48988
CWE-400 Medium
Public exploit available
No
7.5.0 UP12 IF03 16.06.2025 SB2025061634
SB2025061927
SB20250620145
and 40 more
#VU111159 - Improper Protection of Alternate Path
CVE-2025-49125
CWE-424 Medium
No
No
7.5.0 UP12 IF03 16.06.2025 SB2025061634
SB2025061927
SB20250620145
and 35 more
#VU109870 - Use After Free
CVE-2025-5283
CWE-416 Medium
No
No
7.5.0 UP12 IF03 27.05.2025 SB2025052766
SB2025052901
SB20250529172
and 22 more
#VU104504 - Out-of-bounds read
CVE-2022-49395
CWE-125 Low
No
No
7.5.0 UP12 IF03 26.02.2025 SB20250226321
SB20250403107
SB20250416110
and 23 more
#VU102871 - Improper Encoding or Escaping of Output
CVE-2024-52005
CWE-116 Medium
No
No
7.5.0 UP12 IF03 16.01.2025 SB2025011641
SB2025021457
SB2025051343
and 18 more
#VU81728 - Resource exhaustion
CVE-2023-44487
CWE-400 High
Public exploit available
Exploited
7.5.0 UP7 IF03, 7.5.0 UP9 IF02, 7.5.0 UP12 IF03 10.10.2023 SB2023101023
SB2023101024
SB2023101037
and 650 more
#VU80828 - Allocation of Resources Without Limits or Throttling
CVE-2023-33953
CWE-770 Medium
No
No
7.5.0 UP12 IF03 15.09.2023 SB2023091533
SB2023110913
SB2024022138
and 9 more
#VU79796 - Improper input validation
CVE-2023-32732
CWE-20 Medium
No
No
7.5.0 UP12 IF03 21.08.2023 SB2023082198
SB20230821106
SB20230821107
and 16 more
#VU68606 - Improper Verification of Cryptographic Signature
CVE-2020-16156
CWE-347 High
No
No
7.5.0 UP12 IF03 24.10.2022 SB2021121359
SB2022102433
SB2022102701
and 12 more
#VU48887 - Permissions, Privileges, and Access Controls
CVE-2020-16971
CWE-264 High
No
No
7.5.0 UP14 IF01 08.12.2020 SB2020120848
SB2025112544
SB2026021611
and 1 more


Showing elements 41 - 60 out of 89