CVE-2024-2552: PAN-OS: Arbitrary File Delete Vulnerability in the Command Line Interface (CLI) (Severity: MEDIUM)
A command injection vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to bypass system restrictions in the management plane and delete files on the firewall.
Affected Software
Remediation
Mitigation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-2552?
CVE-2024-2552 is classified as a critical severity vulnerability due to its ability to allow authenticated administrators to execute unauthorized commands.
How do I fix CVE-2024-2552?
To fix CVE-2024-2552, update your Palo Alto Networks PAN-OS to the latest patched version listed by the vendor.
Which versions are affected by CVE-2024-2552?
CVE-2024-2552 affects multiple versions of PAN-OS, including versions up to 11.2.4, as well as specific prior versions.
Who can exploit CVE-2024-2552?
CVE-2024-2552 can be exploited by an authenticated administrator with access to the management plane.
What are the potential outcomes of exploiting CVE-2024-2552?
Exploitation of CVE-2024-2552 could lead to unauthorized file deletion on the firewall, compromising the integrity and security of the system.