Palo Alto Networks PAN-OS是美国Palo Alto Networks公司的一套为其防火墙设备开发的操作系统。 Palo Alto Networks PAN-OS存在安全漏洞,该漏洞源于存在权限提升漏洞,允许有权访问管理Web界面的PAN-OS管理员以root权限在防火墙上执行操作。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Palo Alto Networks | Cloud NGFW | All |
unaffected |
| Palo Alto Networks | PAN-OS | 11.2.0< 11.2.4-h1 |
affected |
11.1.0< 11.1.5-h1 |
affected | ||
11.0.0< 11.0.6-h1 |
affected | ||
10.2.0< 10.2.12-h2 |
affected | ||
10.1.0< 10.1.14-h6 |
affected | ||
| Palo Alto Networks | Prisma Access | All |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Palo Alto Networks | Cloud NGFW | - | - |
|
| Palo Alto Networks | PAN-OS | 11.2.0 ~ 11.2.4-h1 | - |
|
| Palo Alto Networks | Prisma Access | - | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | PAN-OS auth bypass + RCE | https://github.com/Chocapikk/CVE-2024-9474 | POC Details |
| 2 | None | https://github.com/k4nfr3/CVE-2024-9474 | POC Details |
| 3 | PoC for PAN-OS Exploit | https://github.com/deathvu/CVE-2024-9474 | POC Details |
| 4 | Palo Alto Networks PAN-OS(CVE-2024-9474) POC | https://github.com/coskper-papa/PAN-OS_CVE-2024-9474 | POC Details |
| 5 | Palo Alto RCE Vuln | https://github.com/aratane/CVE-2024-9474 | POC Details |
| 6 | PAN-OS auth bypass + RCE | https://github.com/uniformince/CVE-2024-9474 | POC Details |
| 7 | PAN-OS auth bypass + RCE | https://github.com/concretesign/CVE-2024-9474 | POC Details |
| 8 | PAN-OS auth bypass + RCE | https://github.com/optimistickn/CVE-2024-9474 | POC Details |
| 9 | PAN-OS auth bypass + RCE | https://github.com/dazzlingteap/CVE-2024-9474 | POC Details |
| 10 | PAN-OS auth bypass + RCE | https://github.com/experiencedt/CVE-2024-9474 | POC Details |
| 11 | PAN-OS auth bypass + RCE | https://github.com/stupidgossi/CVE-2024-9474 | POC Details |
| 12 | PAN-OS auth bypass + RCE | https://github.com/worthytop/CVE-2024-9474 | POC Details |
| 13 | A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS administrator with access to the management web interface to perform actions on the firewall with root privileges. Cloud NGFW and Prisma Access are not impacted by this vulnerability. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2024/CVE-2024-9474.yaml | POC Details |
No public POC found.
Login to generate AI POCNo comments yet