A vulnerability exists in Palo Alto Networks PAN-OS software that enables an authenticated administrator with the privilege to commit a specifically created configuration to read local files and resources from the system.
The product uses an externally controlled name or reference that resolves to a resource that is outside of the intended control sphere.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Pan-os | Paloaltonetworks | 10.2.0 (including) | 10.2.4 (excluding) |
Pan-os | Paloaltonetworks | 11.0.0 (including) | 11.0.0 (including) |