CVE-2017-2329

MEDIUM

Juniper Northstar Controller < 2.1.0 - Authentication Bypass

Title source: rule

Description

An insufficient authentication vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pack 1 may allow an unprivileged, authenticated, user to execute certain specific unprivileged system files capable of causing widespread denials of system services.

Scores

CVSS v3 6.2
EPSS 0.0019
EPSS Percentile 40.1%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Classification

CWE
CWE-287
Status draft

Affected Products (1)

juniper/northstar_controller < 2.1.0

Timeline

Published Apr 24, 2017
Tracked Since Feb 18, 2026