漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
PAN-OS: Threat signatures are evaded by specifically crafted packets
Vulnerability Description
A vulnerability exists in the Palo Alto Network PAN-OS signature-based threat detection engine that allows an attacker to communicate with devices in the network in a way that is not analyzed for threats by sending data through specifically crafted TCP packets. This technique evades signature-based threat detection. This issue impacts: PAN-OS 8.1 versions earlier than 8.1.17; PAN-OS 9.0 versions earlier than 9.0.11; PAN-OS 9.1 versions earlier than 9.1.5; All versions of PAN-OS 7.1 and PAN-OS 8.0.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Vulnerability Type
对因果或异常条件的不恰当检查
Vulnerability Title
Palo Alto Networks PAN-OS 代码问题漏洞
Vulnerability Description
Palo Alto Networks PAN-OS是美国Palo Alto Networks公司的一套为其防火墙设备开发的操作系统。 Palo Alto Networks PAN-OS 存在代码问题漏洞,该漏洞允许攻击者可利用该漏洞与网络中的设备通信,而不通过专门设计的TCP数据包发送数据来分析威胁。该技术避开了基于签名的威胁检测。以下产品及版本受到影响: 8.1.17之前的8.1版本,9.0.11之前的9.0版本,9.1.5之前的9.1版本,PAN-OS 7.1所有版本和PAN-OS 8.0版本。
CVSS Information
N/A
Vulnerability Type
N/A