CVE-2024-3400
Palo Alto Networks PAN-OS Command Injection Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
35Exploited in Wild
YesDecision
Descriptions
A command injection as a result of arbitrary file creation vulnerability in the GlobalProtect feature of Palo Alto Networks PAN-OS software for specific PAN-OS versions and distinct feature configurations may enable an unauthenticated attacker to execute arbitrary code with root privileges on the firewall.
Cloud NGFW, Panorama appliances, and Prisma Access are not impacted by this vulnerability.
Una vulnerabilidad de inyección de comandos en la función GlobalProtect del software PAN-OS de Palo Alto Networks para versiones específicas de PAN-OS y configuraciones de funciones distintas puede permitir que un atacante no autenticado ejecute código arbitrario con privilegios de root en el firewall. Cloud NGFW, dispositivos Panorama y Prisma Access no se ven afectados por esta vulnerabilidad.
Palo Alto Networks PAN-OS GlobalProtect feature contains a command injection vulnerability that allows an unauthenticated attacker to execute commands with root privileges on the firewall.
CVSS Scores
SSVC
- Decision:Act
Timeline
- 2024-04-05 CVE Reserved
- 2024-04-12 CVE Published
- 2024-04-12 Exploited in Wild
- 2024-04-13 First Exploit
- 2024-04-19 KEV Due Date
- 2024-08-01 CVE Updated
- 2024-11-19 EPSS Updated
CWE
- CWE-20: Improper Input Validation
- CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection')
CAPEC
- CAPEC-248: Command Injection
References (38)
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://security.paloaltonetworks.com/CVE-2024-3400 | 2024-04-12 | |
https://www.paloaltonetworks.com/blog/2024/04/more-on-the-pan-os-cve | 2024-05-29 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.0 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.0" | - |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.0 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.0" | h1 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.0 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.0" | h2 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.0 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.0" | h3 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.1 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.1" | - |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.1 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.1" | h1 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.1 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.1" | h2 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.2 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.2" | - |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.2 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.2" | h1 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.2 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.2" | h2 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.2 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.2" | h4 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.2 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.2" | h5 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.3 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.3" | - |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.3 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.3" | h11 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.3 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.3" | h12 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.3 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.3" | h13 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.3 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.3" | h2 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.3 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.3" | h4 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.3 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.3" | h9 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.4 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.4" | - |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.4 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.4" | h10 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.4 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.4" | h16 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.4 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.4" | h2 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.4 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.4" | h3 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.4 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.4" | h4 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.5 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.5" | - |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.5 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.5" | h1 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.5 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.5" | h4 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.5 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.5" | h6 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.6 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.6" | - |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.6 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.6" | h1 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.6 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.6" | h3 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.7 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.7" | - |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.7 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.7" | h1 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.7 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.7" | h3 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.7 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.7" | h6 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.7 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.7" | h8 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.8 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.8" | - |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.8 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.8" | h3 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.9 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.9" | - |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 10.2.9 Search vendor "Paloaltonetworks" for product "Pan-os" and version "10.2.9" | h1 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.0.0 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.0.0" | - |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.0.0 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.0.0" | h1 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.0.0 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.0.0" | h2 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.0.0 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.0.0" | h3 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.0.1 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.0.1" | - |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.0.1 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.0.1" | h2 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.0.1 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.0.1" | h3 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.0.1 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.0.1" | h4 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.0.2 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.0.2" | - |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.0.2 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.0.2" | h1 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.0.2 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.0.2" | h2 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.0.2 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.0.2" | h3 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.0.2 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.0.2" | h4 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.0.3 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.0.3" | - |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.0.3 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.0.3" | h1 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.0.3 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.0.3" | h10 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.0.3 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.0.3" | h3 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.0.3 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.0.3" | h5 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.0.4 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.0.4" | - |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.0.4 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.0.4" | h1 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.1.0 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.1.0" | - |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.1.0 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.1.0" | h1 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.1.0 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.1.0" | h2 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.1.0 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.1.0" | h3 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.1.1 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.1.1" | - |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.1.1 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.1.1" | h1 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.1.2 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.1.2" | - |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.1.2 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.1.2" | h1 |
Affected
| ||||||
Paloaltonetworks Search vendor "Paloaltonetworks" | Pan-os Search vendor "Paloaltonetworks" for product "Pan-os" | 11.1.2 Search vendor "Paloaltonetworks" for product "Pan-os" and version "11.1.2" | h3 |
Affected
|