cbcvebase.
CVE-2017-10622
published 2017-10-13

CVE-2017-10622: An authentication bypass vulnerability in Juniper Networks Junos Space Network Management Platform may allow a remote unauthenticated network based attacker to…

PriorityP262critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
5.39%
91.8th percentile
An authentication bypass vulnerability in Juniper Networks Junos Space Network Management Platform may allow a remote unauthenticated network based attacker to login as any privileged user. This issue only affects Junos Space Network Management Platform 17.1R1 without Patch v1 and 16.1 releases prior to 16.1R3. This issue was found by an external security researcher.

Affected

6 ranges
VendorProductVersion rangeFixed in
juniperjunos_os
juniperjunos_space
juniperjunos_space
juniperjunos_space
juniper_networksjunos_space
juniper_networksjunos_space

Detection & IOCsextracted from sources · hover to see the quote

  • Unauthenticated remote login attempts targeting privileged user accounts on Junos Space Network Management Platform should be investigated as potential exploitation of this authentication bypass
  • ·Vulnerability only affects Junos Space Network Management Platform 17.1R1 without Patch v1 and 16.1 releases prior to 16.1R3; patched or later versions are not affected

CVSS provenance

nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.