Vulnerabilities > CVE-2017-2308 - XXE vulnerability in Juniper Junos Space 14.1

047910
CVSS 6.5 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
network
low complexity
juniper
CWE-611

Summary

An XML External Entity Injection vulnerability in Juniper Networks Junos Space versions prior to 16.1R1 may allow an authenticated user to read arbitrary files on the device.

Vulnerable Configurations

Part Description Count
Application
Juniper
1