PT-2017-3116 · Juniper Networks · Junos Space Network Management Platform
Published
2017-10-11
·
Updated
2019-10-09
·
CVE-2017-10622
CVSS v2.0
10
Critical
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Junos Space Network Management Platform versions 16.1 prior to 16.1R3
Junos Space Network Management Platform version 17.1R1 without Patch v1
Description
The issue is related to an authentication bypass vulnerability in the Junos Space Network Management Platform. This vulnerability may allow a remote unauthenticated network-based attacker to login as any privileged user. The vulnerability is associated with deficiencies in the authentication procedure.
Recommendations
For Junos Space Network Management Platform version 17.1R1, apply Patch v1 to resolve the issue.
For Junos Space Network Management Platform versions 16.1 prior to 16.1R3, update to version 16.1R3 or later to resolve the issue.
Fix
Improper Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Junos Space Network Management Platform