CVE-2023-3282: Cortex XSOAR: Local Privilege Escalation (PE) Vulnerability in Cortex XSOAR Engine
A local privilege escalation (PE) vulnerability in the Palo Alto Networks Cortex XSOAR engine software running on a Linux operating system enables a local attacker to execute programs with elevated privileges if the attacker has shell access to the engine.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2023-3282?
CVE-2023-3282 is a local privilege escalation (PE) vulnerability in the Palo Alto Networks Cortex XSOAR engine software running on a Linux operating system.
How does CVE-2023-3282 affect Palo Alto Networks Cortex XSOAR?
CVE-2023-3282 allows a local attacker with shell access to the Cortex XSOAR engine to execute programs with elevated privileges.
What is the severity rating for CVE-2023-3282?
CVE-2023-3282 has a severity rating of 6.4, which is considered medium.
How can I mitigate CVE-2023-3282?
To mitigate CVE-2023-3282, it is recommended to update the Palo Alto Networks Cortex XSOAR engine software to version 6.10.1 or later.
Where can I find more information about CVE-2023-3282?
For more information about CVE-2023-3282, you can visit the Palo Alto Networks security advisory at https://security.paloaltonetworks.com/CVE-2023-3282.