QID 730417
QID 730417: Palo Alto Networks (PAN-OS) Impact of Spring Vulnerabilities CVE-2022-22963 and CVE-2010-1622 Bypass Vulnerability (PAN-191178)
PAN OS is the software that runs all Palo Alto Networks next-generation firewalls.
The Palo Alto Networks Product Security Assurance team is evaluating the Spring Cloud Function vulnerability (CVE-2022-22963) and Spring Core vulnerability (CVE-2010-1622 bypass) as it relates to our products. This is a developing product security incident and additional product status could be added and changed as more information becomes available.
Affected Versions:
QID Detection Logic (Authenticated):
This QID looks for the vulnerable version of PAN-OS
The Palo Alto Networks Product Security Assurance team is evaluating the Spring Cloud Function vulnerability (CVE-2022-22963) and Spring Core vulnerability (CVE-2010-1622 bypass) as it relates to our products. This is a developing product security incident and additional product status could be added and changed as more information becomes available.
Refer to PAN-191178 for more information about patching this vulnerability.
Workaround:
No workarounds or mitigations are required for Palo Alto Networks products at this time.
- PAN-191178 -
security.paloaltonetworks.com/CVE-2022-22963
CVEs related to QID 730417
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| PAN-191178 |
|