CVE-2016-3655: Input Validation
The management web interface in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5 allows remote attackers to execute arbitrary OS commands via an unspecified API call.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-3655?
CVE-2016-3655 has a high severity rating due to its ability to allow remote attackers to execute arbitrary OS commands.
How do I fix CVE-2016-3655?
To fix CVE-2016-3655, upgrade your Palo Alto Networks PAN-OS to versions 5.0.18, 6.0.13, 6.1.10, or 7.0.5 or later.
Which versions of PAN-OS are affected by CVE-2016-3655?
CVE-2016-3655 affects PAN-OS versions before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5.
Can CVE-2016-3655 be exploited remotely?
Yes, CVE-2016-3655 can be exploited remotely by attackers to execute arbitrary OS commands.
What are the potential impacts of CVE-2016-3655?
The potential impacts of CVE-2016-3655 include unauthorized access and control over the system, leading to data breaches or service disruption.