vulnerability

Palo Alto Networks PAN-SA-2016-0002 (CVE-2016-3654): Command Injection in Command Line Interface

Severity
9
CVSS
(AV:N/AC:L/Au:S/C:C/I:C/A:C)
Published
Feb 24, 2016
Added
Oct 11, 2016
Modified
Jun 17, 2020

Description

The device management command line interface (CLI) in Palo Alto Networks PAN-OS before 5.0.18, 5.1.x before 5.1.11, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5H2 allows remote authenticated administrators to execute arbitrary OS commands via an SSH command parameter.

Solutions

palo-alto-networks-pan-os-upgrade-5-0palo-alto-networks-pan-os-upgrade-5-1palo-alto-networks-pan-os-upgrade-6-0palo-alto-networks-pan-os-upgrade-6-1palo-alto-networks-pan-os-upgrade-7-0
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.