Back to search
CVE-2024-2552
Published: Nov 14, 2024
Modified: Nov 14, 2024
PUBLISHED
Description
A command injection vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to bypass system restrictions in the management plane and delete files on the firewall.
| Vendor | Product | Versions |
|---|---|---|
Palo Alto Networks | Cloud NGFW | unaffected All |
Palo Alto Networks | PAN-OS | affected 11.2.0 - < 11.2.4affected 11.1.0 - < 11.1.5affected 11.0.0 - < 11.0.6affected 10.2.0 - < 10.2.12unaffected 10.1.0 |
Palo Alto Networks | Prisma Access | unaffected All |
Weaknesses (CWE)
References
https://security.paloaltonetworks.com/CVE-2024-2552
vendor-advisory
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now