Denial of Service Vulnerability in Juniper Networks NorthStar Controller
CVE-2017-2320
10CRITICAL
Key Information:
- Vendor
- Juniper Networks
- Vendor
- CVE Published:
- 24 April 2017
Summary
A vulnerability in the Juniper Networks NorthStar Controller Application, prior to version 2.1.0 Service Pack 1, allows an unauthenticated, unprivileged attacker to mount network-based exploits that could result in various forms of denial of service. This could potentially lead to targeted information disclosures and unauthorized modifications within the NorthStar system. The implications extend to any components managed by the NorthStar system, including instances where the system interacts with other entities using read-only or read-write credentials, jeopardizing the integrity and availability of the network.
Affected Version(s)
NorthStar Controller Application prior to version 2.1.0 Service Pack 1
References
CVSS V3.1
Score:
10
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved