A command injection as a result of arbitrary file creation vulnerability in the GlobalProtect feature of Palo Alto Networks PAN-OS software for specific PAN-OS versions and distinct feature configurations may enable an unauthenticated attacker to execute arbitrary code with root privileges on the firewall. Cloud NGFW, Panorama appliances, and Prisma Access are not impacted by this vulnerability.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: palo_alto

Published: 2024-04-12T07:20:00.707Z

Updated: 2024-08-01T20:12:06.667Z

Reserved: 2024-04-05T17:40:30.117Z

Link: CVE-2024-3400

cve-icon Vulnrichment

Updated: 2024-08-01T20:12:06.667Z

cve-icon NVD

Status : Analyzed

Published: 2024-04-12T08:15:06.230

Modified: 2024-05-29T16:00:24.093

Link: CVE-2024-3400

cve-icon Redhat

No data.