Palo Alto Networks warns of potential PAN-OS RCE vulnerability
ID: f7ec68d7-f507-5a2c-bf42-2c477495c9ba
STIX ID: report--f7ec68d7-f507-5a2c-bf42-2c477495c9ba
Feed Name: Bleeping Computer
Palo Alto Networks warned customers to restrict Internet access to PAN-OS management interfaces due to a claimed remote code execution issue (PAN-SA-2024-0015) and provided hardening recommendations; separately, CISA alerted to active attacks exploiting a missing-authentication flaw in Expedition (CVE-2024-5910), which can be chained with a public proof-of-concept for CVE-2024-9464 to gain unauthenticated command execution and potentially hijack PAN-OS firewalls, leading to the CVE's inclusion in CISA's Known Exploited Vulnerabilities Catalog.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
