Denial of Service Vulnerability in Palo Alto Networks Traps ESM Console
CVE-2017-7408

7.5HIGH

Key Information:

Status
Vendor
CVE Published:
14 April 2017

Summary

A vulnerability exists in Palo Alto Networks Traps ESM Console which permits attackers to exploit improper validation of requests related to the revocation of a Traps agent license. This can lead to a denial of service, disrupting normal operations and potentially exposing systems to additional risks. Organizations using versions of the Traps ESM Console prior to 3.4.4 should upgrade to the latest version to mitigate the risk associated with this vulnerability.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.