HIGH🇵🇱 Wersja polska

CVE-2017-2321

CVSS 8.6v3.0pub. 2017-04-24upd. 2026-05-13

A vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pack 1 may allow an unauthenticated, unprivileged, network-based attacker to cause various system services partial to full denials of services, modification of system states and files, and potential disclosure of sensitive information which may assist the attacker in further attacks on the system through the use of multiple attack vectors, including man-in-the-middle attacks, file injections, and malicious execution of commands causing out of bound memory conditions leading to other attacks.

CVSS Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H
  • Juniper Northstar Controller

    APP
    Juniper
    ≤ 2.1.0
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2017-2320CRITICAL10.0PL ✓same product

Krytyczna podatność DoS i ujawnienia informacji w Juniper NorthStar Controller

CVE-2017-2323HIGH7.5same product

A denial of service vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 ...

CVE-2017-2319HIGH8.3same product

A vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pack 1 may...

CVE-2017-2317HIGH8.6same product

A denial of service vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 ...

CVE-2017-2331HIGH7.3same product

A firewall bypass vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Se...