A vulnerability in how Palo Alto Networks PAN-OS software processes data received from Cloud Identity Engine (CIE) agents enables modification of User-ID groups. This impacts user access to network resources where users may be inappropriately denied or allowed access to resources based on your existing Security Policy rules.
The product assigns the wrong ownership, or does not properly verify the ownership, of an object or resource.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Pan-os | Paloaltonetworks | 10.1.0 (including) | 10.1.11 (excluding) |
Pan-os | Paloaltonetworks | 10.2.0 (including) | 10.2.5 (excluding) |
Pan-os | Paloaltonetworks | 11.0.0 (including) | 11.0.3 (excluding) |