cbcvebase.
CVE-2017-2308
published 2017-05-30

CVE-2017-2308: An XML External Entity Injection vulnerability in Juniper Networks Junos Space versions prior to 16.1R1 may allow an authenticated user to read arbitrary files…

medium6.5CVSS 3.0
AVNACLPRLUINSUCHINAN
An XML External Entity Injection vulnerability in Juniper Networks Junos Space versions prior to 16.1R1 may allow an authenticated user to read arbitrary files on the device.

Affected

4 ranges
VendorProductVersion rangeFixed in
juniperjunos_os
juniperjunos_space<= 16.1
juniperjunos_space
juniper_networksjunos_space