漏洞类别:General remote services
漏洞等级:
漏洞信息
The vulnerability exists in the web interface packet capture management component in Palo Alto Networks PAN-OS.
Affected Versions:
PAN-OS 6.1.18 and earlier
PAN-OS 7.0.18 and earlier
PAN-OS 7.1.13 and earlier
PAN-OS 8.0.6 and earlier
QID Detection Logic (authenticated):
This QID looks for the vulnerable version of PAN-OS via XML API.
漏洞危害
Successful exploitation could allow an authenticated user to inject arbitrary commands on the targeted system.
解决方案
Please refer to PAN-SA-2017-0028 for more information about patching this vulnerability.
Patch:
Following are links for downloading patches to fix the vulnerabilities:
0daybank
文章评论