QID 731263
QID 731263: Palo Alto Networks (PAN-OS) Improper Privilege Management Vulnerability (['PAN-181876', 'PAN-218663'])
PAN OS is the software that runs all Palo Alto Networks next-generation firewalls.
An improper authorization vulnerability in Palo Alto Networks Panorama software enables an authenticated read-only administrator to upload files using the web interface and completely fill one of the disk partitions with those uploaded files, which prevents the ability to log into the web interface or to download PAN-OS, WildFire, and content images.
Affected Versions:
PAN-OS 11.0 versions earlier than PAN-OS 11.0.3
PAN-OS 10.2 versions earlier than PAN-OS 10.2.8
PAN-OS 10.1 versions earlier than PAN-OS 10.1.12
PAN-OS 9.1 versions earlier than PAN-OS 9.1.17
PAN-OS 9.0 versions earlier than PAN-OS 9.0.17-h4
QID Detection Logic (Authenticated):
This QID looks for the vulnerable version of PAN-OS
An improper authorization vulnerability in Palo Alto Networks Panorama software enables an authenticated read-only administrator to upload files using the web interface and completely fill one of the disk partitions with those uploaded files, which prevents the ability to log into the web interface or to download PAN-OS, WildFire, and content images.
Refer to ['PAN-181876', 'PAN-218663'] for more information about patching this vulnerability.
Workaround:
This issue requires the attacker to have authenticated access to the PAN-OS web interface. You can mitigate the effect of this issue by following the Best Practices for Securing Administrative Access in the PAN-OS technical documentation at https://docs.paloaltonetworks.com/best-practices.
Please see https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000PLSJCA4 for information about how to clear the affected disk partition from the CLI.
- PAN-181876 -
security.paloaltonetworks.com/CVE-2024-2433 - PAN-218663 -
security.paloaltonetworks.com/CVE-2024-2433
CVEs related to QID 731263
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| PAN-218663 |
|