PT-2020-15229 · Palo Alto Networks · Pan-Os
Jin Chen
·
Published
2020-05-13
·
Updated
2020-05-19
·
CVE-2020-2007
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
PAN-OS versions 7.1
PAN-OS versions 8.1 through 8.1.13
PAN-OS versions 9.0 through 9.0.6
Description
An OS command injection vulnerability in the management server component of PAN-OS allows an authenticated user to potentially execute arbitrary commands with root privileges.
Recommendations
For PAN-OS version 7.1, update to a version later than 7.1.
For PAN-OS versions 8.1 through 8.1.13, update to version 8.1.14 or later.
For PAN-OS versions 9.0 through 9.0.6, update to version 9.0.7 or later.
Fix
OS Command Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Pan-Os