CyberRota Analysis
AI-GeneratedA command injection vulnerability in Palo Alto Networks PAN-OS allows authenticated administrators with CLI access to execute arbitrary commands as a root user, potentially bypassing system restrictions. This risk is particularly concerning for environments utilizing a Luna Hardware Security Module (HSM), although it is mitigated if CLI access is limited to a small group of trusted administrators. Organizations using affected versions of PAN-OS should prioritize remediation to safeguard against potential exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user. To be able to exploit this issue, the user must have access to the PAN-OS CLI and the device must be configured with a Luna Hardware Security Module (HSM). The security risk posed by this issue is significantly minimized when CLI access is restricted to a limited group of administrators. Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.