Palo Alto Networks PAN-OS File Read Vulnerability
Palo Alto Networks PAN-OS contains an external control of file name or path vulnerability. Successful exploitation enables an authenticated attacker with network access to the management web interface to read files on the PAN-OS filesystem that are readable by the “nobody” user.
Palo Alto NetworksPAN-OS
Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
Evidence reason details
Eligible evidence is present for this bounded claim.
- Revision
evidence-policy-v1.1.0- Cutoff
- Resolution
- None
Eligible evidence is present for this bounded claim.
- Revision
evidence-policy-v1.1.0- Cutoff
- Resolution
- None
Eligible assertions materially conflict and remain visible side by side.
- Revision
casca-direct-cvss-eligibility-v1- Cutoff
- Resolution
- Resolve conflict
The source assertion is retained, but its canonical identity is unresolved.
- Revision
casca-factor-d-obligations-v1- Cutoff
- Resolution
- Resolve identity
- Added
- 2025-02-20
- Due
- 2025-03-13
- Priority interval
- 60.2–66.7
- Coverage
- 87%