Metrics
Affected Vendors & Products
Solution
This issue is fixed in Cortex XSOAR 6.6 build B186115, Cortex XSOAR 6.8 build B185719, Cortex XSOAR 6.9 build B185415, Cortex XSOAR 6.10 build 185964, and all later builds of Cortex XSOAR. NOTE: Cortex XSOAR 6.10.0 build 185964 is generally available for customers to download. Customers using Cortex XSOAR hosted services, and those wanting to upgrade to a non-generally available build, will need to make a Customer Support request at https://support.paloaltonetworks.com/ https://support.paloaltonetworks.com/ to upgrade.
Workaround
There are no known workarounds for this issue.
Thu, 13 Feb 2025 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A file disclosure vulnerability in the Palo Alto Networks Cortex XSOAR server software enables an authenticated user with access to the web interface to read local files from the server. | A file disclosure vulnerability in the Palo Alto Networks Cortex XSOAR server software enables an authenticated user with access to the web interface to read local files from the server. |
Wed, 27 Nov 2024 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: palo_alto
Published:
Updated: 2025-02-13T16:38:40.524Z
Reserved: 2022-10-27T18:48:12.679Z
Link: CVE-2023-0003

Updated: 2024-08-02T04:54:32.567Z

Status : Modified
Published: 2023-02-08T18:15:11.777
Modified: 2025-02-13T17:15:52.570
Link: CVE-2023-0003

No data.

No data.