QID 730271
Date Published: 2021-11-24
QID 730271: Palo Alto Networks (PAN-OS) Panorama External control of file Vulnerability (PAN-120397)
PAN OS is the software that runs all Palo Alto Networks next-generation firewalls.
An external control of path and data vulnerability in the Palo Alto Networks PAN-OS Panorama XSLT processing logic
Affected Version:
All versions of PAN-OS 8.0
All versions of PAN-OS 7.1
PAN-OS 8.1 versions earlier than 8.1.12
PAN-OS 9.0 versions earlier than 9.0.6
QID Detection Logic (Authenticated):
This QID looks for the vulnerable version of PAN-OS Panorama
A successful exploit allows an unauthenticated user with network access to PAN-OS management interface to write attacker supplied file on the system and elevate privileges.
Refer to PAN-120397 for more information about patching this vulnerability.Workaround:
This issue impacts the management web interface. You can mitigate the impact of this issue by following best practices for securing the PAN-OS management web interface. Please review the Best Practices for Securing Administrative Access in the PAN-OS technical documentation, available at https://docs.paloaltonetworks.com/best-practices.
- PAN-120397 -
security.paloaltonetworks.com/CVE-2020-2001
CVEs related to QID 730271
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| PAN-120397 |
|