Source |
The Hacker News |
Identifiant |
3643520 |
Date de publication |
2021-11-10 22:35:59 (vue: 2021-11-11 07:06:01) |
Titre |
Palo Alto Warns of Zero-Day Bug in Firewalls Using GlobalProtect Portal VPN |
Texte |
A new zero-day vulnerability has been disclosed in Palo Alto Networks GlobalProtect VPN that could be abused by an unauthenticated network-based attacker to execute arbitrary code on affected devices with root user privileges.
Tracked as CVE-2021-3064 (CVSS score: 9.8), the security weakness impacts PAN-OS 8.1 versions earlier than PAN-OS 8.1.17. Massachusetts-based cybersecurity firm Randori |
Notes |
|
Envoyé |
Oui |
Condensat |
2021 3064 abused affected alto arbitrary attacker based been bug code could cve cvss cybersecurity day devices disclosed earlier execute firewalls firm globalprotect has impacts massachusetts network networks new palo pan portal privileges randori root score: security than tracked unauthenticated user using versions vpn vulnerability warns weakness zero |
Tags |
Vulnerability
|
Stories |
|
Move |
|