CVE-2021-3049
Cortex XSOAR: Improper Authorization of Incident Investigations Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
An improper authorization vulnerability in the Palo Alto Networks Cortex XSOAR server enables an authenticated network-based attacker with investigation read permissions to download files from incident investigations of which they are aware but are not a part of. This issue impacts: All Cortex XSOAR 5.5.0 builds; Cortex XSOAR 6.1.0 builds earlier than 12099345. This issue does not impact Cortex XSOAR 6.2.0 versions.
Una vulnerabilidad de autorización inapropiada en el servidor Cortex XSOAR de Palo Alto Networks permite a un atacante autenticado basado en la red con permisos de lectura de investigación descargar archivos de investigaciones de incidentes de los que presenta conocimiento pero no forma parte. Este problema afecta: Todas las builds de Cortex XSOAR 5.5.0; las builds de Cortex XSOAR 6.1.0 anteriores a 12099345. Este problema no afecta a las versiones de Cortex XSOAR 6.2.0
CVSS Scores
SSVC
- Decision:-
Timeline
- 2021-01-06 CVE Reserved
- 2021-09-08 CVE Published
- 2024-09-16 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-285: Improper Authorization
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://security.paloaltonetworks.com/CVE-2021-3049 | 2022-07-25 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Paloaltonetworks Search vendor "Paloaltonetworks" | Cortex Xsoar Search vendor "Paloaltonetworks" for product "Cortex Xsoar" | 5.5.0 Search vendor "Paloaltonetworks" for product "Cortex Xsoar" and version "5.5.0" | - |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Cortex Xsoar Search vendor "Paloaltonetworks" for product "Cortex Xsoar" | 5.5.0 Search vendor "Paloaltonetworks" for product "Cortex Xsoar" and version "5.5.0" | 70066 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Cortex Xsoar Search vendor "Paloaltonetworks" for product "Cortex Xsoar" | 5.5.0 Search vendor "Paloaltonetworks" for product "Cortex Xsoar" and version "5.5.0" | 73387 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Cortex Xsoar Search vendor "Paloaltonetworks" for product "Cortex Xsoar" | 5.5.0 Search vendor "Paloaltonetworks" for product "Cortex Xsoar" and version "5.5.0" | 75211 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Cortex Xsoar Search vendor "Paloaltonetworks" for product "Cortex Xsoar" | 5.5.0 Search vendor "Paloaltonetworks" for product "Cortex Xsoar" and version "5.5.0" | 78518 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Cortex Xsoar Search vendor "Paloaltonetworks" for product "Cortex Xsoar" | 5.5.0 Search vendor "Paloaltonetworks" for product "Cortex Xsoar" and version "5.5.0" | 94592 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Cortex Xsoar Search vendor "Paloaltonetworks" for product "Cortex Xsoar" | 6.1.0 Search vendor "Paloaltonetworks" for product "Cortex Xsoar" and version "6.1.0" | - |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Cortex Xsoar Search vendor "Paloaltonetworks" for product "Cortex Xsoar" | 6.1.0 Search vendor "Paloaltonetworks" for product "Cortex Xsoar" and version "6.1.0" | 1016923 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Cortex Xsoar Search vendor "Paloaltonetworks" for product "Cortex Xsoar" | 6.1.0 Search vendor "Paloaltonetworks" for product "Cortex Xsoar" and version "6.1.0" | 1031903 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Cortex Xsoar Search vendor "Paloaltonetworks" for product "Cortex Xsoar" | 6.1.0 Search vendor "Paloaltonetworks" for product "Cortex Xsoar" and version "6.1.0" | 1077664 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Cortex Xsoar Search vendor "Paloaltonetworks" for product "Cortex Xsoar" | 6.1.0 Search vendor "Paloaltonetworks" for product "Cortex Xsoar" and version "6.1.0" | 848144 |
Affected
|