An information leak vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pack 1 may allow a network-based malicious attacker to perform a man-in-the-middle attack, thereby stealing authentic credentials from encrypted paths which are easily decrypted, and subsequently gain complete control of the system.
References
Link Resource
http://www.securityfocus.com/bid/97616 Third Party Advisory VDB Entry
https://kb.juniper.net/JSA10783 Mitigation Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: juniper

Published: 2017-04-24T15:00:00

Updated: 2017-04-25T09:57:01

Reserved: 2016-12-01T00:00:00


Link: CVE-2017-2334

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2017-04-24T15:59:00.817

Modified: 2017-04-27T16:37:12.577


Link: CVE-2017-2334

JSON object: View

cve-icon Redhat Information

No data.

CWE