CVE-2024-5913: PAN-OS: Improper Input Validation Vulnerability in PAN-OS
An improper input validation vulnerability in Palo Alto Networks PAN-OS software enables an attacker with the ability to tamper with the physical file system to elevate privileges.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Palo Alto Networks PAN-OSto a version that resolves this vulnerability.Fixed in 10.1.14-h2 - Upgrade
Upgrade
Palo Alto Networks PAN-OSto a version that resolves this vulnerability.Fixed in 10.2.10 - Upgrade
Upgrade
Palo Alto Networks PAN-OSto a version that resolves this vulnerability.Fixed in 11.0.5 - Upgrade
Upgrade
Palo Alto Networks PAN-OSto a version that resolves this vulnerability.Fixed in 11.1.4 - Upgrade
Upgrade
Palo Alto Networks PAN-OSto a version that resolves this vulnerability.Fixed in 11.2.1
Event History
Frequently Asked Questions
What is the severity of CVE-2024-5913?
CVE-2024-5913 has a high severity rating due to its potential for privilege escalation.
How do I fix CVE-2024-5913?
To fix CVE-2024-5913, ensure that you upgrade to the latest version of Palo Alto Networks PAN-OS that includes the necessary patches.
What products are affected by CVE-2024-5913?
CVE-2024-5913 affects multiple versions of Palo Alto Networks PAN-OS including versions from 10.1.0 to 11.2.1.
Can CVE-2024-5913 be exploited remotely?
CVE-2024-5913 requires an attacker to have physical access to the system to exploit the vulnerability.
What kind of vulnerability is CVE-2024-5913?
CVE-2024-5913 is classified as an improper input validation vulnerability.