CVE-2024-5916: PAN-OS: Cleartext Exposure of External System Secrets (Severity: MEDIUM)
An information exposure vulnerability in Palo Alto Networks PAN-OS software enables a local system administrator to unintentionally disclose secrets, passwords, and tokens of external systems. A read-only administrator who has access to the config log, can read secrets, passwords, and tokens to external systems.
Affected Software
Remediation
Information
Mitigation
Event History
Frequently Asked Questions
What is the severity of CVE-2024-5916?
CVE-2024-5916 is classified as an information exposure vulnerability which can lead to the disclosure of sensitive data.
How do I fix CVE-2024-5916?
To mitigate CVE-2024-5916, upgrade to PAN-OS versions 10.2.9 or 11.0.5 or later, which include the necessary patches.
Who is affected by CVE-2024-5916?
CVE-2024-5916 affects local system administrators with read-only access to the config log on Palo Alto Networks PAN-OS versions 10.2.0 to 10.2.8 and 11.0.0 to 11.0.4.
What data can be exposed by CVE-2024-5916?
CVE-2024-5916 can lead to the unintentional exposure of secrets, passwords, and tokens of external systems.
Is there a workaround for CVE-2024-5916?
Currently, the best recommendation for CVE-2024-5916 is to apply the software updates, as no specific workaround is available.