漏洞类别:General remote services
漏洞等级:
漏洞信息
Management interface of PAN-OS is prone to remote code execution vulnerability through the exploitation of a combination of unrelated vulnerabilities.
Affected Versions:
PAN-OS 6.1.18 and earlier
PAN-OS 7.0.18 and earlier
PAN-OS 7.1.13 and earlier
PAN-OS 8.0.5 and earlier
QID Detection Logic (authenticated):
This QID looks for the vulnerable version of PAN-OS via XML API.
漏洞危害
An attacker could remotely execute code on PAN-OS in the context of the highest privileged user.
解决方案
Please refer to PAN-SA-2017-0027 for more information about patching this vulnerability.
Patch:
Following are links for downloading patches to fix the vulnerabilities:
0daybank
文章评论