CVE-2017-2318
MEDIUMJuniper Networks NorthStar Controller App <2.1.0 SP1 - Info Disclosure
Title source: llmDescription
A vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pack 1 may allow an authenticated malicious user to read log files which will compromise the integrity of the system, or provide elevation of privileges.
Scores
CVSS v3
6.5
EPSS
0.0030
EPSS Percentile
52.6%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Classification
CWE
CWE-200
Status
published
Affected Products (2)
juniper/northstar_controller
< 2.1.0
Juniper Networks/NorthStar Controller Application
< prior to version 2.1.0 Service Pack 1
Timeline
Published
Apr 24, 2017
Tracked Since
Feb 18, 2026