vulnerability
Palo Alto Networks PAN-SA-2016-0002 (CVE-2016-3654): Command Injection in Command Line Interface
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 9 | (AV:N/AC:L/Au:S/C:C/I:C/A:C) | Feb 24, 2016 | Oct 11, 2016 | Jun 17, 2020 |
Severity
9
CVSS
(AV:N/AC:L/Au:S/C:C/I:C/A:C)
Published
Feb 24, 2016
Added
Oct 11, 2016
Modified
Jun 17, 2020
Description
The device management command line interface (CLI) in Palo Alto Networks PAN-OS before 5.0.18, 5.1.x before 5.1.11, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5H2 allows remote authenticated administrators to execute arbitrary OS commands via an SSH command parameter.
Solutions
palo-alto-networks-pan-os-upgrade-5-0palo-alto-networks-pan-os-upgrade-5-1palo-alto-networks-pan-os-upgrade-6-0palo-alto-networks-pan-os-upgrade-6-1palo-alto-networks-pan-os-upgrade-7-0
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.