Known vulnerabilities in Juniper Secure Analytics (JSA) - page 5

Software CPE: cpe:2.3:a:juniper_networks:jsa:*:*:*:*:*:*:*:*
Total vulnerabilities: 647
Public exploits: 39
Known exploited (KEV): 9
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Juniper Secure Analytics (JSA) Juniper Secure Analytics (JSA) is affected by 647 known vulnerabilities: 3 critical, 36 high, 193 medium, 415 low Critical High Medium Low

Vulnerabilities (647)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU109211 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-56463
CWE-79 Low
No
No
7.5.0 UP11 IF03 15.05.2025 SB2025051552
SB2025051554
#VU104117 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2025-1244
CWE-78 High
No
No
7.5.0 UP11 IF03 21.02.2025 SB2025022110
SB2025022111
SB2025022112
and 31 more
#VU103970 - Improper input validation
CVE-2025-1094
CWE-20 Critical
Available
Exploited
7.5.0 UP11 IF03 14.02.2025 SB2025021408
SB2025022038
SB2025022039
and 78 more
#VU103502 - Use After Free
CVE-2022-49043
CWE-416 Medium
No
No
7.5.0 UP11 IF03 03.02.2025 SB2025020327
SB2025020330
SB2025020353
and 60 more
#VU103436 - Resource exhaustion
CVE-2024-11187
CWE-400 Medium
No
No
7.5.0 UP11 IF03 29.01.2025 SB2025012962
SB2025012964
SB2025012965
and 83 more
#VU101972 - Security Features
CVE-2024-56326
CWE-254 Low
No
No
7.5.0 UP11 IF03 27.12.2024 SB2024122789
SB2024122790
SB2024122791
and 78 more
#VU101893 - Permissions, Privileges, and Access Controls
CVE-2024-56337
CWE-264 High
No
No
7.5.0 UP11 IF03 20.12.2024 SB2024122063
SB2025011311
SB2025011801
and 45 more
#VU101814 - Permissions, Privileges, and Access Controls
CVE-2024-50379
CWE-264 Medium
Available
No
7.5.0 UP11 IF03 17.12.2024 SB2024121745
SB2024121905
SB2024122055
and 57 more
#VU101344 - Integer overflow
CVE-2024-10917
CWE-190 Low
No
No
7.5.0 UP11 IF03 09.12.2024 SB2024120927
SB2024120928
SB2024120929
and 66 more
#VU101102 - Out-of-bounds write
CVE-2024-53104
CWE-787 High
No
Exploited
7.5.0 UP11 IF03 03.12.2024 SB2024120308
SB2024121358
SB2024121359
and 128 more
#VU101024 - Improper Output Neutralization for Logs
CVE-2024-52337
CWE-117 Low
No
No
7.5.0 UP11 IF03 28.11.2024 SB2024112824
SB2024112827
SB2024112828
and 20 more
#VU98647 - Improper input validation
CVE-2024-21208
CWE-20 Low
No
No
7.5.0 UP11 IF03 15.10.2024 SB20241015214
SB20241015215
SB20241015216
and 139 more
#VU98518 - Resource exhaustion
CVE-2024-9823
CWE-400 Medium
No
No
7.5.0 UP11 IF03 14.10.2024 SB20241014112
SB2024120637
SB2025011709
and 14 more
#VU98049 - Resource exhaustion
CVE-2024-8508
CWE-400 Medium
No
No
7.5.0 UP11 IF03 05.10.2024 SB2024100509
SB2024100510
SB2024100511
and 27 more
#VU96114 - Out-of-bounds read
CVE-2024-42292
CWE-125 Low
No
No
7.5.0 UP11 IF03 19.08.2024 SB2024081956
SB2024090671
SB2024091077
and 41 more
#VU96099 - Missing release of memory after effective lifetime
CVE-2024-43854
CWE-401 Low
No
No
7.5.0 UP11 IF03 19.08.2024 SB2024081941
SB2024090668
SB2024090669
and 58 more
#VU89297 - Missing Authorization
CVE-2024-4317
CWE-862 Low
No
No
7.5.0 UP11 IF03 09.05.2024 SB2024050940
SB2024051519
SB2024051525
and 28 more
#VU87749 - Missing Authorization
CVE-2024-1488
CWE-862 Low
No
No
7.5.0 UP8 IF03, 7.5.0 UP11 IF03 22.03.2024 SB2024021506
SB2024032281
SB2024041058
and 28 more
#VU27519 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-11023
CWE-79 Low
Available
Exploited
7.5.0 UP9 IF02, 7.5.0 UP11 IF03 05.05.2020 SB2020042126
SB2020052033
SB2020052103
and 180 more
#VU19178 - Out-of-bounds write
CVE-2019-12900
CWE-787 High
No
No
7.5.0 UP11 IF03 15.07.2019 SB2019071503
SB2019072101
SB2019080907
and 85 more


Showing elements 81 - 100 out of 647