Lucene search

K
githubexploit14C59CE0-8AF0-5659-A36D-47D91DEBF010
HistoryApr 18, 2024 - 4:35 p.m.

Exploit for Command Injection in Paloaltonetworks Pan-Os

2024-04-1816:35:29
183
command injection
paloalto
cve-2024-3400
python code
arbitrary uploading
status codes
github
rapid7 analysis

CVSS3

10

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

AI Score

9.8

Confidence

High

EPSS

0.965

Percentile

99.6%

CVE-2024-3400

Simple Python code to check for arbitrary upload…

This is an article that belongs to githubexploit private collection.
Please sign in to get more Information.

CVSS3

10

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

AI Score

9.8

Confidence

High

EPSS

0.965

Percentile

99.6%