PT-2012-6286 · Palo Alto Networks · Pan-Os
Published
2012-04-27
·
Updated
2020-02-17
·
CVE-2012-6597
CVSS v2.0
6.3
Medium
| Vector | AV:N/AC:M/Au:S/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Palo Alto Networks PAN-OS versions 3.1.10 and earlier
Palo Alto Networks PAN-OS versions 4.0.8 and earlier
Description
The issue allows remote authenticated users to cause a denial of service by sending a specially crafted command via the command-line interface, resulting in the management-server crash and its unavailability. The attacker must be an authenticated user of the device.
Recommendations
For versions 3.1.10 and earlier, update to version 3.1.11 or later to resolve the issue.
For versions 4.0.8 and earlier, update to version 4.0.9 or later to resolve the issue.
Fix
DoS
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Pan-Os