CVE-2017-10601

CRITICAL

Junos OS Multiple Versions - Unauthenticated Authentication Bypass via Commit Failure

Title source: llm
STIX 2.1

Description

A specific device configuration can result in a commit failure condition. When this occurs, a user is logged in without being prompted for a password while trying to login through console, ssh, ftp, telnet or su, etc., This issue relies upon a device configuration precondition to occur. Typically, device configurations are the result of a trusted administrative change to the system's running configuration. The following error messages may be seen when this failure occurs: mgd: error: commit failed: (statements constraint check failed) Warning: Commit failed, activating partial configuration. Warning: Edit the router configuration to fix these errors. If the administrative changes are not made that result in such a failure, then this issue is not seen. No other Juniper Networks products or platforms are affected by this issue. Affected releases are Juniper Networks Junos OS 12.3 prior to 12.3R10, 12.3R11; 12.3X48 prior to 12.3X48-D20; 13.2 prior to 13.2R8; 13.3 prior to 13.3R7; 14.1 prior to 14.1R4-S12, 14.1R5, 14.1R6; 14.1X53 prior to 14.1X53-D30; 14.2 prior to 14.2R4; 15.1 prior to 15.1F2, 15.1F3, 15.1R2.

References (2)

Core 2
Core References
Mitigation, Vendor Advisory x_refsource_confirm
https://kb.juniper.net/JSA10802
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1038902

Scores

CVSS v3 9.8
EPSS 0.0042
EPSS Percentile 62.2%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-287
Status published
Products (8)
juniper/junos 12.3 (11 CPE variants)
juniper/junos 12.3x48 d10 (2 CPE variants)
juniper/junos 13.2 (10 CPE variants)
juniper/junos 13.3 (6 CPE variants)
juniper/junos 14.1 (7 CPE variants)
juniper/junos 14.1x53 (7 CPE variants)
juniper/junos 14.2 (5 CPE variants)
juniper/junos 15.1 (2 CPE variants)
Published Jul 17, 2017
Tracked Since Feb 18, 2026