6
CVSSv3

CVE-2024-2552

CVSSv4: 6.8 | CVSSv3: 6 | CVSSv2: NA | VMScore: 780 | EPSS: 0.00161 | KEV: Not Included
Published: 14/11/2024 Updated: 24/01/2025

Vulnerability Summary

Authenticated Command Injection Bypass in Palo Alto Networks PAN-OS

There's a command injection vulnerability in Palo Alto Networks PAN-OS software. An authenticated administrator can exploit this to bypass system restrictions in the management plane. This allows them to delete files on the firewall.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

paloaltonetworks pan-os

paloaltonetworks pan-os 10.2.7

paloaltonetworks pan-os 10.2.8

paloaltonetworks pan-os 10.2.9

paloaltonetworks pan-os 10.2.10

paloaltonetworks pan-os 10.2.11

paloaltonetworks pan-os 11.1.4

Github Repositories

Python 脚本,用于解析 Palo Alto Networks 安全公告,提取 CVE 信息,包括 CVE 编号、发布 URL、公告标题、CVSS 评分和严重性等级。

paloalto-cve-parser Python 脚本,用于解析 Palo Alto Networks 安全公告,提取 CVE 信息,包括 CVE 编号、发布 URL、公告标题、CVSS 评分和严重性等级。 Palo Alto Networks CVE 解析器 这是一个 Python 脚本,用于解析 Palo Alto Networks 安全公告,提取 CVE (Common Vulnerabilities and Exposures) 信息,包括 CVE 编号、发布 U