Juniper Junos Space是美国瞻博网络(Juniper Networks)公司的一套网络管理解决方案。该方案支持在设备和服务的整个生命周期内对其进行自动配置、监控和故障排除。 Juniper Junos Space 17.1R1之前的版本中存在安全漏洞,该漏洞源于程序没有充分的验证节点证书。攻击者可利用该漏洞实施中间人攻击,未授权更改Space数据库或添加节点。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Juniper Networks | Junos Space | versions prior to 17.1R1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2017-10616 | 5.3 MEDIUM | Contrail: hard coded credentials |
| CVE-2017-10617 | 5.0 MEDIUM | Contrail: XML External Entity (XXE) vulnerability |
| CVE-2017-10612 | Junos Space: Persistent Cross site scripting in Junos Space | |
| CVE-2017-10623 | Junos Space: Insufficient verification of cluster messages | |
| CVE-2017-10622 | Junos Space: Authentication bypass vulnerability | |
| CVE-2017-10621 | Junos OS: Denial of service vulnerability in telnetd | |
| CVE-2017-10620 | SRX Series: Antivirus updates are downloaded without verification | |
| CVE-2017-10619 | Junos: SRX cluster denial of service vulnerability in flowd due to multicast packets | |
| CVE-2017-10618 | Junos: RPD core due to BGP UPDATE with malformed optional transitive attributes | |
| CVE-2017-10615 | Junos: Potential remote code execution vulnerability in PAM | |
| CVE-2017-10614 | Junos OS: A remote unauthenticated attacker can consume large amounts of CPU and/or memory | |
| CVE-2017-10613 | Junos OS: A kernel hang may occur due to a specific loopback filter action command | |
| CVE-2016-1261 | Junos: vulnerabilities in J-Web (CVE-2016-1261) | |
| CVE-2017-10611 | Junos: EX Series PFE and MX MPC7E/8E/9E PFE crash when fetching interface stats with 'exte | |
| CVE-2017-10610 | SRX Series: Embedded ICMP may cause the flowd process to crash | |
| CVE-2017-10608 | SRX series: Junos OS: SRX series using IPv6 Sun/MS-RPC ALGs may experience flowd crash on | |
| CVE-2017-10607 | Junos: rpd core due to receipt of specially crafted BGP packet | |
| CVE-2017-10606 | SRX Series: Cryptographic weakness in SRX300 Series TPM Firmware | |
| CVE-2016-4925 | JUNOSe: Line Card Reset: processor exception 0x68616c74 (halt) task: scheduler, upon recei | |
| CVE-2016-4924 | vMX: Information leak vulnerability |
Showing top 20 of 25 CVEs. View all on vendor page → →
No comments yet