vulnerability
Palo Alto Networks PAN-SA-2019-0011: Information about PAN-OS Finding
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 9 | (AV:N/AC:L/Au:N/C:P/I:C/A:N) | May 15, 2019 | May 16, 2019 | Feb 18, 2025 |
Description
An issue was resolved in PAN-OS that resulted in configured Layer 3 interfaces erroneously opening ports 28869/tcp and 28870/tcp on the IP address assigned to the Layer 3 interface, which bind to an internal service that performs HTTP 301 redirection to the HTTPS port (443/tcp) on the same interface IP address. There are no known vulnerabilities or immediate security risks posed by this issue; however customers are advised to review this issue and determine the appropriate next steps. (Refer to PAN-94058 and PAN-101704 in the release notes associated with your release: https://docs.paloaltonetworks.com/pan-os.html.
Solutions
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.