CVE Database
/

CVE-2017-10602

Back to search

CVE-2017-10602

Published: Jul 14, 2017

Modified: Sep 17, 2024

PUBLISHED

CVSS v3.0

7.0

HIGH

Description

A buffer overflow vulnerability in Junos OS CLI may allow a local authenticated user with read only privileges and access to Junos CLI, to execute code with root privileges. Affected releases are Juniper Networks Junos OS: 14.1X53 versions prior to 14.1X53-D46 on EX2200/VC, EX3200, EX3300/VC, EX4200, EX4300, EX4550/VC, EX4600, EX6200, EX8200/VC (XRE), QFX3500, QFX3600, QFX5100; 14.1X53 versions prior to 14.1X53-D130 on QFabric System; 14.2 versions prior to 14.2R4-S9, 14.2R6; 15.1 versions prior to 15.1F5, 15.1R3; 15.1X49 versions prior to 15.1X49-D40 on SRX Series; 15.1X53 versions prior to 15.1X53-D47 on NFX150, NFX250; 15.1X53 versions prior to 15.1X53-D65 on QFX10000 Series; 15.1X53 versions prior to 15.1X53-D233 on QFX5110, QFX5200.

VendorProductVersions

Juniper Networks

Junos OS

affected
14.1X53 - < 14.1X53-D46

Juniper Networks

Junos OS

affected
14.2 - < 14.2R4-S9, 14.2R6
affected
15.1 - < 15.1F5, 15.1R3

Juniper Networks

Junos OS

affected
15.1X49 - < 15.1X49-D40

Juniper Networks

Junos OS

affected
15.1X53 - < 15.1X53-D47

Juniper Networks

Junos OS

affected
15.1X53 - < 15.1X53-D65

Juniper Networks

Junos OS

affected
14.1X53 - < 14.1X53-D130

Juniper Networks

Junos OS

affected
15.1X53 - < 15.1X53-D233

CVSS v3.0 Details

CVSS v3.0 Vector

CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector

Local

Attack Complexity

High

Privileges Required

Low

User Interaction

None

Scope

Unchanged

Confidentiality

High

Integrity

High

Availability

High

References

1038900
vdb-entry
x_refsource_SECTRACK
100323
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now