An improper input neutralization vulnerability in the management web interface of the Palo Alto Networks PAN-OS® software enables an authenticated administrator to bypass system restrictions and execute arbitrary commands.
The security risk posed by this issue is significantly minimized when CLI access is restricted to a limited group of administrators.
Cloud NGFW and Prisma® Access are not affected by this vulnerability.
| Software | From | Fixed in |
|---|---|---|
| paloaltonetworks / pan-os | 10.2.0 | 10.2.17 |
| paloaltonetworks / pan-os | 11.1.0 | 11.1.11 |
| paloaltonetworks / pan-os | 11.2.0 | 11.2.8 |