CVE-2024-5913Improper Input Validation in Palo Alto Networks Pan-os

Severity
6.8MEDIUMNVD
CNA6.1
EPSS
0.1%
top 69.38%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 10

Description

An improper input validation vulnerability in Palo Alto Networks PAN-OS software enables an attacker with the ability to tamper with the physical file system to elevate privileges.

CVSS vector

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 0.9 | Impact: 5.9

Affected Packages7 packages

NVDpaloaltonetworks/pan-os10.1.010.1.14+5
CVEListV5palo_alto_networks/pan-os10.1.010.1.14-h2+4
Palo Altopaloalto/pan-os

🔴Vulnerability Details

2
GHSA
GHSA-9x49-p5gq-22q7: An improper input validation vulnerability in Palo Alto Networks PAN-OS software enables an attacker with the ability to tamper with the physical file2024-07-10
CVEList
PAN-OS: Improper Input Validation Vulnerability in PAN-OS2024-07-10

📋Vendor Advisories

1
Palo Alto
PAN-OS: Improper Input Validation Vulnerability in PAN-OS2024-07-10
CVE-2024-5913 — Improper Input Validation in Palo | cvebase