Denial of Service Vulnerability in Juniper Networks NorthStar Controller
CVE-2017-2320

10CRITICAL

Key Information:

Vendor
CVE Published:
24 April 2017

Summary

A vulnerability in the Juniper Networks NorthStar Controller Application, prior to version 2.1.0 Service Pack 1, allows an unauthenticated, unprivileged attacker to mount network-based exploits that could result in various forms of denial of service. This could potentially lead to targeted information disclosures and unauthorized modifications within the NorthStar system. The implications extend to any components managed by the NorthStar system, including instances where the system interacts with other entities using read-only or read-write credentials, jeopardizing the integrity and availability of the network.

Affected Version(s)

NorthStar Controller Application prior to version 2.1.0 Service Pack 1

References

CVSS V3.1

Score:
10
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.