QID 731369
Date Published: 2024-04-11
QID 731369: Palo Alto Networks (PAN-OS) Weak Certificate Strength in Panorama Software Leads to Sensitive Information Disclosure Vulnerability (PAN-200047)
PAN OS is the software that runs all Palo Alto Networks next-generation firewalls.
A weak (low bit strength) device certificate in Palo Alto Networks Panorama software enables an attacker to perform a meddler-in-the-middle (MitM) attack to capture encrypted traffic between the Panorama management server and the firewalls it manages. With sufficient computing resources, the attacker could break encrypted communication and expose sensitive information that is shared between the management server and the firewalls.
Affected Versions:
PAN-OS 11.0 versions earlier than PAN-OS 11.0.4
PAN-OS 10.2 versions earlier than PAN-OS 10.2.7-h3
PAN-OS 10.2 versions earlier than PAN_OS 10.2.8
PAN-OS 10.1 versions earlier than PAN-OS 10.1.12
QID Detection Logic (Authenticated):
This QID looks for the vulnerable version of PAN-OS
A weak (low bit strength) device certificate in Palo Alto Networks Panorama software enables an attacker to perform a meddler-in-the-middle (MitM) attack to capture encrypted traffic between the Panorama management server and the firewalls it manages. With sufficient computing resources, the attacker could break encrypted communication and expose sensitive information that is shared between the management server and the firewalls.
Refer to CVE-2024-3387 for more information about patching this vulnerability.
- PAN-200047 -
security.paloaltonetworks.com/CVE-2024-3387
CVEs related to QID 731369
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2024-3387 |
|