CVE-2017-2318

Severity
6.5MEDIUM
EPSS
0.3%
top 47.10%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 24
Latest updateMay 17

Description

A vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pack 1 may allow an authenticated malicious user to read log files which will compromise the integrity of the system, or provide elevation of privileges.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 2.8 | Impact: 3.6

Affected Packages2 packages

CVEListV5juniper_networks/northstar_controller_applicationprior to version 2.1.0 Service Pack 1

🔴Vulnerability Details

2
GHSA
GHSA-9f36-jrfg-35m2: A vulnerability in Juniper Networks NorthStar Controller Application prior to version 22022-05-17
CVEList
CVE-2017-2318: A vulnerability in Juniper Networks NorthStar Controller Application prior to version 22017-04-24

💥Exploits & PoCs

1
Exploit-DB
WildMIDI 0.4.2 - Multiple Vulnerabilities2017-08-08

📋Vendor Advisories

1
Juniper
CVE-2017-2318: A vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pack 1 may allow an authenticated malicious user t2017-04-24

💬Community

1
Bugzilla
CVE-2017-11661 CVE-2017-11662 CVE-2017-11663 CVE-2017-11664 wildmidi: Multiple vulnerabilities2017-08-08