CWE
287
Advisory Published
Updated

CVE-2017-10622

First published: Fri Oct 13 2017(Updated: )

An authentication bypass vulnerability in Juniper Networks Junos Space Network Management Platform may allow a remote unauthenticated network based attacker to login as any privileged user. This issue only affects Junos Space Network Management Platform 17.1R1 without Patch v1 and 16.1 releases prior to 16.1R3. This issue was found by an external security researcher.

Credit: sirt@juniper.net

Affected SoftwareAffected VersionHow to fix
Juniper Networks Junos Space=17.1-r1
Juniper Networks Junos Space=16.1
Juniper Networks Junos Space=16.1-r1
Juniper Networks Junos Space=16.1-r2

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2017-10622?

    CVE-2017-10622 has been classified as a high severity vulnerability due to the potential for remote authentication bypass.

  • How do I fix CVE-2017-10622?

    To fix CVE-2017-10622, apply Patch v1 for Junos Space Network Management Platform version 17.1R1 and ensure that all other affected versions are updated accordingly.

  • Who is affected by CVE-2017-10622?

    CVE-2017-10622 affects users of Junos Space Network Management Platform versions 17.1R1 without Patch v1, as well as all 16.1 releases prior to the appropriate patch.

  • What type of attack can exploit CVE-2017-10622?

    CVE-2017-10622 can be exploited by remote unauthenticated network-based attackers to gain unauthorized access as a privileged user.

  • Can CVE-2017-10622 be exploited without authentication?

    Yes, CVE-2017-10622 allows attackers to bypass authentication and log in as any privileged user without needing credentials.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203