THREAT OPS › Threat News › [NVD] CVE-2024-0012 (CRITICAL 9.8) — An authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web interface to gain PAN-OS administrator privileges to perform administrative actions, tamper with the configuration, or exploit other authen
[NVD] CVE-2024-0012 (CRITICAL 9.8) — An authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web interface to gain PAN-OS administrator privileges to perform administrative actions, tamper with the configuration, or exploit other authen
CVE-2024-0012 CVSS: 9.8 CRITICAL Published: 2024-11-18T16:15:11.683
An authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web interface to gain PAN-OS administrator privileges to perform administrative actions, tamper with the configuration, or exploit other authenticated privilege escalation vulnerabilities like
MITRE ATT&CK techniques
Indicators of compromise
- CVE-2024-0012cve
- CVE-2024-9474cve
- https://security.paloaltonetworks.com/CVE-2024-9474url
- https://live.paloaltonetworks.com/t5/community-blogs/tips-amp-tricks-how-to-secure-the-management-access-of-your-palo/ba-p/464431url
Original source: https://nvd.nist.gov/vuln/detail/CVE-2024-0012