Beveiligingsadvies

CVE-2024-5919

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-11-14 09:36:46
Laatst bijgewerkt 2024-11-14 19:41:04
Toegewezen door palo_alto
CVSS-score 5.1
Status PUBLISHED

Beschrijving

A blind XML External Entities (XXE) injection vulnerability in the Palo Alto Networks PAN-OS software enables an authenticated attacker to exfiltrate arbitrary files from firewalls to an attacker controlled server. This attack requires network access to the firewall management interface.