QID 730159
Date Published: 2021-08-18
QID 730159: Palo Alto Networks PAN-OS Weak Cryptography Used in Web Interface Authentication(PAN-156240)
PAN OS is the software that runs all Palo Alto Networks next-generation firewalls.
A cryptographically weak pseudo-random number generator (PRNG) is used during authentication to the Palo Alto Networks PAN-OS web interface. This enables an authenticated attacker, with the capability to observe their own authentication secrets over a long duration on the PAN-OS appliance, to impersonate another authenticated web interface administrator's session.
Affected Versions:
PAN-OS 8.1 versions earlier than PAN-OS 8.1.19
PAN-OS 9.0 versions earlier than PAN-OS 9.0.14
PAN-OS 9.1 versions earlier than PAN-OS 9.1.10
PAN-OS 10.0 versions earlier than PAN-OS 10.0.4.
QID Detection Logic (Authenticated):
This QID looks for the vulnerable version of PAN-OS via XML API.
A cryptographically weak pseudo-random number generator (PRNG) is used during authentication to the Palo Alto Networks PAN-OS web interface. This enables an authenticated attacker, with the capability to observe their own authentication secrets over a long duration on the PAN-OS appliance, to impersonate another authenticated web interface administrator's session.
Refer to PAN-156240 for more information about patching this vulnerability.
- PAN-156240 -
security.paloaltonetworks.com/CVE-2021-3047
CVEs related to QID 730159
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| PAN-156240 |
|