Palo Alto Networks GlobalProtect Command Injection (CVE-2024-3400)

Related Vulnerabilities: CVE-2024-3400  

Check Point Reference: CPAI-2024-0196 Date Published: 14 Apr 2024 Severity: Critical Last Updated: Sunday 14 April, 2024 Source: Industry Reference:CVE-2024-3400
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? Palo Alto Networks PAN-OS 10.2 up to 10.2.9-h4
Palo Alto Networks PAN-OS 11.0 up to 11.0.4-h4
Palo Alto Networks PAN-OS 11.1 up to 11.1.2-h4 Vulnerability Description A command injection vulnerability exists in Palo Alto Networks GlobalProtect. Successful exploitation of this vulnerability could allow a remote attacker to execute arbitrary commands on the affected system.