Unauthorized Access Vulnerability in PAN-OS Software
CVE-2024-0008

6.6MEDIUM

Key Information:

Vendor
CVE Published:
14 February 2024

Badges

๐Ÿ‘พ Exploit Exists

What is CVE-2024-0008?

The management interface of Palo Alto Networks PAN-OS software is vulnerable due to a session management flaw that permits web sessions to remain active indefinitely in specific situations. This oversight can lead to unauthorized access, potentially allowing attackers to exploit user privileges. Organizations using affected versions of PAN-OS should assess their exposure and implement appropriate security measures to mitigate this risk to their network security.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

PAN-OS 9.0 < 9.0.17-h2

PAN-OS 9.0 < 9.0.18

PAN-OS 9.1 < 9.1.17

References

CVSS V3.1

Score:
6.6
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • ๐Ÿ‘พ

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

Credit

Palo Alto Networks thanks Brian Yaklin for discovering and reporting this issue.
.