CVE-2017-2318

MEDIUM

Juniper Networks NorthStar Controller App <2.1.0 SP1 - Info Disclosure

Title source: llm

Description

A vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pack 1 may allow an authenticated malicious user to read log files which will compromise the integrity of the system, or provide elevation of privileges.

Scores

CVSS v3 6.5
EPSS 0.0030
EPSS Percentile 52.6%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Classification

CWE
CWE-200
Status published

Affected Products (2)

juniper/northstar_controller < 2.1.0
Juniper Networks/NorthStar Controller Application < prior to version 2.1.0 Service Pack 1

Timeline

Published Apr 24, 2017
Tracked Since Feb 18, 2026