Description
An improper input validation vulnerability in Palo Alto Networks PAN-OS software enables an attacker with the ability to tamper with the physical file system to elevate privileges.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
This issue is fixed in PAN-OS 10.1.14-h2, PAN-OS 10.2.10, PAN-OS 11.0.5, PAN-OS 11.1.4, PAN-OS 11.2.1, and all later PAN-OS versions.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-47045 | An improper input validation vulnerability in Palo Alto Networks PAN-OS software enables an attacker with the ability to tamper with the physical file system to elevate privileges. |
References
| Link | Providers |
|---|---|
| https://security.paloaltonetworks.com/CVE-2024-5913 |
|
History
Fri, 24 Jan 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Paloaltonetworks
Paloaltonetworks pan-os |
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:o:paloaltonetworks:pan-os:*:*:*:*:*:*:*:* cpe:2.3:o:paloaltonetworks:pan-os:10.1.14:-:*:*:*:*:*:* |
|
| Vendors & Products |
Paloaltonetworks
Paloaltonetworks pan-os |
Status: PUBLISHED
Assigner: palo_alto
Published:
Updated: 2024-08-06T04:19:19.068Z
Reserved: 2024-06-12T15:27:56.398Z
Link: CVE-2024-5913
Updated: 2024-08-01T21:25:02.975Z
Status : Analyzed
Published: 2024-07-10T19:15:11.837
Modified: 2025-01-24T16:00:42.420
Link: CVE-2024-5913
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD