Palo Alto Networks 旗下的 Checkov(由 Prisma® Cloud 提供)存在一个代码执行漏洞。当 Checkov 扫描包含攻击者可控的配置文件所在的目录时,该漏洞可能导致任意代码执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Palo Alto Networks | Checkov by Prisma Cloud | 3.2.0 ~ 3.2.532 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-0307 | 5.9 MEDIUM | GlobalProtect App: Local Privilege Escalation Vulnerabilities |
| CVE-2026-0306 | 5.8 MEDIUM | Prisma Access Agent: EndPoint DLP Bypass Vulnerability on Windows |
| CVE-2026-0310 | 5.2 MEDIUM | PAN-OS: Buffer Overflow Vulnerability via XML Processing |
| CVE-2026-0304 | 4.8 MEDIUM | Cortex XDR Broker VM: Privilege Escalation Vulnerability |
| CVE-2026-0305 | 4.3 MEDIUM | Prisma Access Agent: Information Disclosure Vulnerability on Linux |
| CVE-2026-0309 | 4.0 MEDIUM | PAN-OS: Authenticated Command Injection in CLI with Luna HSM Configuration |
| CVE-2026-0302 | 1.1 LOW | Checkov by Prisma Cloud: OS Command Injection Vulnerability |
| CVE-2026-0308 | 0.4 LOW | PAN-OS: Stored Cross-Site Scripting (XSS) Vulnerability in the Web Interface |
No comments yet