CVE-2024-3400

Palo Alto Networks PAN-OS Command Injection Vulnerability (CVE-2024-3400)

abril 18, 2024

Overview Recently, NSFOCUS CERT detected that Palo Alto Networks issued a security announcement and fixed the command injection vulnerability (CVE-2024-3400) in PAN-OS. Since GlobalProtect gateway or portal configured in PAN-OS does not strictly filter user input, unauthenticated attackers can construct special packets to execute arbitrary code on the firewall with root privileges. The CVSS score […]

Search

Inscreva-se no Blog da NSFOCUS