Attacker can perform MitM attack to capture encrypted traffic

CVE-2024-3387
5.3MEDIUM

Key Information

Status
Pan-os
Cloud Ngfw
Prisma Access
Vendor
CVE Published:
10 April 2024

Summary

A weak (low bit strength) device certificate in Palo Alto Networks Panorama software enables an attacker to perform a meddler-in-the-middle (MitM) attack to capture encrypted traffic between the Panorama management server and the firewalls it manages. With sufficient computing resources, the attacker could break encrypted communication and expose sensitive information that is shared between the management server and the firewalls.

Affected Version(s)

PAN-OS >= 9.0.0

PAN-OS >= 9.1.0

PAN-OS < 10.1.12

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Initial publication

  • Vulnerability published.

  • Vulnerability Reserved.

Collectors

NVD DatabaseMitre Database

Credit

Palo Alto Networks thanks one of our customers for discovering and reporting this issue.
.