CVE-2024-5908Log File Information Exposure in Palo Alto Networks Globalprotect APP

Severity
5.5MEDIUMNVD
EPSS
0.3%
top 44.56%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 12

Description

A problem with the Palo Alto Networks GlobalProtect app can result in exposure of encrypted user credentials, used for connecting to GlobalProtect, in application logs. Normally, these application logs are only viewable by local users and are included when generating logs for troubleshooting purposes. This means that these encrypted credentials are exposed to recipients of the application logs.

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:A/VC:L/VI:N/VA:N/SC:H/SI:H/SA:H

Affected Packages3 packages

NVDpaloaltonetworks/globalprotect5.15.1.12+3
CVEListV5palo_alto_networks/globalprotect_app5.1.05.1.12+3

🔴Vulnerability Details

2
CVEList
GlobalProtect App: Encrypted Credential Exposure via Log Files2024-06-12
GHSA
GHSA-6q37-cp6x-mhfw: A problem with the Palo Alto Networks GlobalProtect app can result in exposure of encrypted user credentials, used for connecting to GlobalProtect, in2024-06-12

📋Vendor Advisories

1
Palo Alto
GlobalProtect App: Encrypted Credential Exposure via Log Files2024-06-12
CVE-2024-5908 — Log File Information Exposure in Palo | cvebase