CVE-2017-2333

Severity
6.5MEDIUM
EPSS
0.4%
top 37.26%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 24
Latest updateMay 13

Description

A persistent denial of service vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pack 1 may allow a malicious, network-based, authenticated attacker to consume enough system resources to cause a persistent denial of service by visiting certain specific URLs on the server.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6

Affected Packages2 packages

CVEListV5juniper_networks/northstar_controller_applicationprior to version 2.1.0 Service Pack 1

🔴Vulnerability Details

2
GHSA
GHSA-3gp6-22qr-4j7f: A persistent denial of service vulnerability in Juniper Networks NorthStar Controller Application prior to version 22022-05-13
CVEList
CVE-2017-2333: A persistent denial of service vulnerability in Juniper Networks NorthStar Controller Application prior to version 22017-04-24

📋Vendor Advisories

1
Juniper
CVE-2017-2333: A persistent denial of service vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pack 1 may allow a ma2017-04-24