CVE-2017-2307: XSS
Published May 30, 2017
·Updated
A reflected cross site scripting vulnerability in the administrative interface of Juniper Networks Junos Space versions prior to 16.1R1 may allow remote attackers to steal sensitive information or perform certain administrative actions on Junos Space.
Affected Software
1 affected component
Juniper Junos Space<=15.2
Event History
May 30, 2017
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-2307?
CVE-2017-2307 is classified as a medium severity vulnerability.
2
How do I fix CVE-2017-2307?
To fix CVE-2017-2307, upgrade to Junos Space version 16.1R1 or later.
3
What type of attack is associated with CVE-2017-2307?
CVE-2017-2307 is associated with a reflected cross-site scripting attack.
4
Who is affected by CVE-2017-2307?
Any administrator using Juniper Networks Junos Space versions prior to 16.1R1 is affected by CVE-2017-2307.
5
What can attackers do exploiting CVE-2017-2307?
Attackers exploiting CVE-2017-2307 may steal sensitive information or perform unauthorized administrative actions.