Multiple vulnerabilities have been resolved in the NorthStar Controller Application starting from version 2.1.0 Service Pack 1 and all subsequent releases. Critical security issues resolved as a result of these upgrades as they apply to Juniper's NorthStar Controller Application are:
7.2 (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
These issues have been resolved in the NorthStar Controller Application starting in 2.1.0 Service Pack 1 and all subsequent releases. These issues are being tracked as PRs 1103674, 1103676, 1103678, 1106089, 1106094, 1106801, 1106892, 1107562, 1107564, 1107608, 1108490, 1108919, 1108951, 1109646, 1110003, 1110039, 1112391, 1111575, 1112725, 1112779, 1113092, 1113876, 1114956, 1115789, 1116107, 1116132, 1116168, 1116176, 1116515, 1118661, 1136576, 1178592, 1183288, 1183581, 1183595, 1183610, 1183612, and 1183615, and are visible on the Customer Support website. KB16765 [juniper.net] - "In which releases are vulnerabilities fixed?" describes which release vulnerabilities are fixed as per our End of Engineering and End of Life support policies.
2017-04-12: Initial publication