CVE-2017-10602 describes a buffer overflow vulnerability in the Junos OS CLI, impacting various Juniper Networks Junos OS versions across multiple product lines including EX, QFX, SRX, and NFX series devices. A local authenticated user with read-only CLI privileges could exploit this to achieve root-level code execution. With a CVSS score of 7.8 (High), this vulnerability presents a significant risk due to its low attack complexity and high impact on confidentiality, integrity, and availability. Currently, there is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 14.1X53, < 14.1X53-D46CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* | ||
>= 15.1X53, < 15.1X53-D47CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* | ||
>= 15.1X53, < 15.1X53-D65CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* | ||
>= 15.1X53, < 15.1X53-D233CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* | ||
>= 14.1X53, < 14.1X53-D130CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.