CVE-2024-8688: PAN-OS: Arbitrary File Read Vulnerability in the Command Line Interface (CLI) (Severity: MEDIUM)
An improper neutralization of matching symbols vulnerability in the Palo Alto Networks PAN-OS command line interface (CLI) enables authenticated administrators (including read-only administrators) with access to the CLI to to read arbitrary files on the firewall.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-8688?
CVE-2024-8688 is considered a high severity vulnerability due to its potential to allow unauthorized file access.
How do I fix CVE-2024-8688?
To fix CVE-2024-8688, update your Palo Alto Networks PAN-OS to the latest version as per the vendor's security advisories.
Who is affected by CVE-2024-8688?
CVE-2024-8688 affects authenticated administrators, including read-only administrators, using specific versions of Palo Alto Networks PAN-OS.
What could an attacker achieve with CVE-2024-8688?
An attacker leveraging CVE-2024-8688 could read arbitrary files on the firewall, compromising sensitive system data.
What versions of PAN-OS are impacted by CVE-2024-8688?
CVE-2024-8688 affects Palo Alto Networks PAN-OS versions prior to 9.1.15, 10.0.10, and includes version 10.1.0.