CVE-2017-2308

Severity CVSS v4.0:
Pending analysis
Type:
CWE-611 Improper Restriction of XML External Entity Reference ('XXE')
Publication date:
30/05/2017
Last modified:
20/04/2025

Description

An XML External Entity Injection vulnerability in Juniper Networks Junos Space versions prior to 16.1R1 may allow an authenticated user to read arbitrary files on the device.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:juniper:junos_space:*:*:*:*:*:*:*:* 16.1 (including)