Palo Alto Networks PAN-OS是美国Palo Alto Networks公司的一套为其防火墙设备开发的操作系统。 Palo Alto Networks PAN-OS存在安全漏洞,该漏洞源于存在权限提升漏洞,允许有权访问管理Web界面的PAN-OS管理员以root权限在防火墙上执行操作。
| 厂商 | 产品 | 版本范围 | 状态 |
|---|---|---|---|
| Palo Alto Networks | Cloud NGFW | All |
unaffected |
| Palo Alto Networks | PAN-OS | 11.2.0< 11.2.4-h1 |
affected |
11.1.0< 11.1.5-h1 |
affected | ||
11.0.0< 11.0.6-h1 |
affected | ||
10.2.0< 10.2.12-h2 |
affected | ||
10.1.0< 10.1.14-h6 |
affected | ||
| Palo Alto Networks | Prisma Access | All |
unaffected |
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
| 厂商 | 产品 | 影响版本 | CPE | 订阅 |
|---|---|---|---|---|
| Palo Alto Networks | Cloud NGFW | - | - |
|
| Palo Alto Networks | PAN-OS | 11.2.0 ~ 11.2.4-h1 | - |
|
| Palo Alto Networks | Prisma Access | - | - |
|
| # | POC 描述 | 源链接 | 神龙链接 |
|---|---|---|---|
| 1 | PAN-OS auth bypass + RCE | https://github.com/Chocapikk/CVE-2024-9474 | POC详情 |
| 2 | None | https://github.com/k4nfr3/CVE-2024-9474 | POC详情 |
| 3 | PoC for PAN-OS Exploit | https://github.com/deathvu/CVE-2024-9474 | POC详情 |
| 4 | Palo Alto Networks PAN-OS(CVE-2024-9474) POC | https://github.com/coskper-papa/PAN-OS_CVE-2024-9474 | POC详情 |
| 5 | Palo Alto RCE Vuln | https://github.com/aratane/CVE-2024-9474 | POC详情 |
| 6 | PAN-OS auth bypass + RCE | https://github.com/uniformince/CVE-2024-9474 | POC详情 |
| 7 | PAN-OS auth bypass + RCE | https://github.com/concretesign/CVE-2024-9474 | POC详情 |
| 8 | PAN-OS auth bypass + RCE | https://github.com/optimistickn/CVE-2024-9474 | POC详情 |
| 9 | PAN-OS auth bypass + RCE | https://github.com/dazzlingteap/CVE-2024-9474 | POC详情 |
| 10 | PAN-OS auth bypass + RCE | https://github.com/experiencedt/CVE-2024-9474 | POC详情 |
| 11 | PAN-OS auth bypass + RCE | https://github.com/stupidgossi/CVE-2024-9474 | POC详情 |
| 12 | PAN-OS auth bypass + RCE | https://github.com/worthytop/CVE-2024-9474 | POC详情 |
| 13 | A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS administrator with access to the management web interface to perform actions on the firewall with root privileges. Cloud NGFW and Prisma Access are not impacted by this vulnerability. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2024/CVE-2024-9474.yaml | POC详情 |
未找到公开 POC。
登录以生成 AI POC暂无评论