Insufficient Authorization Vulnerability in Junos Space by Juniper Networks
CVE-2017-2305
8.8HIGH
Summary
On Juniper Networks' Junos Space versions prior to 16.1R1, a vulnerability allows readonly users on the administrative web interface to create privileged accounts due to an insufficient authorization check. This flaw enables unauthorized privilege escalation, potentially compromising the integrity of the network management system. Taking proactive measures to address this vulnerability is crucial for maintaining security and protecting sensitive data.
Affected Version(s)
Junos Space versions prior to 16.1R1
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved