CVE-2017-2326
6.5MEDIUM
Key Information:
- Vendor
- Juniper Networks
- Vendor
- CVE Published:
- 24 April 2017
Summary
An information disclosure vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pack 1 may allow an unprivileged, authenticated, network-based attacker to replicate the underlying Junos OS VM and all data it maintains to their local system for future analysis.
Affected Version(s)
NorthStar Controller Application prior to version 2.1.0 Service Pack 1
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved