CVE-2012-6592: OS Command Injection
Published Aug 31, 2013
·Updated
Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.5 allows remote attackers to execute arbitrary commands via unspecified vectors, aka Ref ID 31091.
Affected Software
6 affected components
Palo Alto Networks PAN-OS<=3.1.9
Palo Alto Networks PAN-OS=4.0.0
Palo Alto Networks PAN-OS=4.0.1
Palo Alto Networks PAN-OS=4.0.2
Palo Alto Networks PAN-OS=4.0.3
Palo Alto Networks PAN-OS=4.0.4
Event History
Aug 31, 2013
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-6592?
CVE-2012-6592 is considered a critical vulnerability due to its potential to allow remote command execution.
2
How do I fix CVE-2012-6592?
To mitigate CVE-2012-6592, you should upgrade Palo Alto Networks PAN-OS to version 3.1.10 or 4.0.5 or later.
3
What systems are affected by CVE-2012-6592?
CVE-2012-6592 affects Palo Alto Networks PAN-OS versions earlier than 3.1.10 and all 4.0.x versions before 4.0.5.
4
What types of attacks can exploit CVE-2012-6592?
CVE-2012-6592 can be exploited through unspecified vectors that allow remote attackers to execute arbitrary commands.
5
Is there a patch available for CVE-2012-6592?
Yes, a patch is available in PAN-OS versions 3.1.10 and 4.0.5 that addresses the vulnerabilities associated with CVE-2012-6592.