Palo Alto Networks Networks Panorama是美国Palo Alto Networks公司的一套支持集中管理、配置防火墙的解决方案。该产品支持网络流量监控和威胁管理等功能。 Palo Alto Networks Panorama 存在安全漏洞,该漏洞源于使用弱(低位强度)设备证书。攻击者利用该漏洞能够执行中间人 (MitM) 攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Palo Alto Networks | PAN-OS | 10.1.0 ~ 10.1.12 | - |
|
| Palo Alto Networks | Cloud NGFW | - | - |
|
| Palo Alto Networks | Prisma Access | - | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-3382 | 7.5 HIGH | PAN-OS: Firewall Denial of Service (DoS) via a Burst of Crafted Packets |
| CVE-2024-3384 | 7.5 HIGH | PAN-OS: Firewall Denial of Service (DoS) via Malformed NTLM Packets |
| CVE-2024-3385 | 7.5 HIGH | PAN-OS: Firewall Denial of Service (DoS) when GTP Security is Disabled |
| CVE-2024-3383 | 7.4 HIGH | PAN-OS: Improper Group Membership Change Vulnerability in Cloud Identity Engine (CIE) |
| CVE-2024-3386 | 5.3 MEDIUM | PAN-OS: Predefined Decryption Exclusions Does Not Work as Intended |
| CVE-2024-3388 | 4.1 MEDIUM | PAN-OS: User Impersonation in GlobalProtect SSL VPN |
No comments yet