PT-2019-2809 · Palo Alto Networks · Pan-Os
Joe Graham
·
Published
2019-07-15
·
Updated
2020-08-24
·
CVE-2019-1576
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
PAN-OS versions 9.0.2 and earlier
PAN-OS versions prior to 7.1
Description
The issue is related to a lack of input sanitization in the PAN-OS operating system, which can be exploited by a remote attacker to gain access to the command processor and escalate privileges. This can allow an authenticated attacker to gain access to a remote shell in PAN-OS and potentially run with escalated user permissions.
Recommendations
For PAN-OS versions 9.0.2 and earlier, update to a version later than 9.0.2 to resolve the issue.
For PAN-OS versions prior to 7.1, update to version 7.1 or later to resolve the issue.
As a temporary workaround, consider restricting access to the command line interface to minimize the risk of exploitation.
Fix
OS Command Injection
Command Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Pan-Os