Palo Alto Networks PAN-OS Command Injection Vulnerability
Summary
| CVE | CVE-2024-3400 |
|---|---|
| State | PUBLISHED |
| Assigner | Unknown |
| Source Priority | Enrichment-only fallback |
| Published | 2024-04-12 00:00:00 UTC |
| Updated | 2026-07-22 20:07:15 UTC |
| Description | Palo Alto Networks PAN-OS GlobalProtect feature contains a command injection vulnerability that allows an unauthenticated attacker to execute commands with root privileges on the firewall. |
Risk And Classification
EPSS: 0.999990000 probability, percentile 1.000000000 (date 2026-07-22)
CISA KEV: Listed on 2024-04-12; due 2024-04-19; ransomware use Known
CISA Known Exploited Vulnerability
| Vendor | Palo Alto Networks |
|---|---|
| Product | PAN-OS |
| Name | Palo Alto Networks PAN-OS Command Injection Vulnerability |
| Required Action | Apply mitigations per vendor instructions as they become available. Otherwise, users with vulnerable versions of affected devices should enable Threat Prevention IDs available from the vendor. See the vendor bulletin for more details and a patch release schedule. |
| Notes | https://security.paloaltonetworks.com/CVE-2024-3400 ; https://nvd.nist.gov/vuln/detail/CVE-2024-3400 |
There are no known software configurations currently associated with this CVE in NVD or the CVE Program record.
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
| CISA Known Exploited Vulnerabilities catalog | CISA | www.cisa.gov | kev |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 731378 Palo Alto Networks (PAN-OS) Command Injection Vulnerability (PAN-252214) (Zero Day)