CVE-2024-5919

CVSS V2 None CVSS V3 None
Description
A blind XML External Entities (XXE) injection vulnerability in the Palo Alto Networks PAN-OS software enables an authenticated attacker to exfiltrate arbitrary files from firewalls to an attacker controlled server. This attack requires network access to the firewall management interface.
Overview
  • CVE ID
  • CVE-2024-5919
  • Assigner
  • palo_alto
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-11-14T09:36:46.390Z
  • Last Modified Date
  • 2024-11-14T19:41:04.355Z
References
Reference URL Reference Tags
https://security.paloaltonetworks.com/CVE-2024-5919 vendor-advisory
History
Created Old Value New Value Data Type Notes
2024-11-15 13:20:21 Added to TrackCVE