216.73.216.226

November 18 Advisory: Active Exploitation of Critical RCE in Palo Alto Networks PAN-OS [CVE-2024-0012 and CVE-2024-9474]

· Published 18/11/2024 19:19 · Modified 19/11/2024 09:34

Export JSON

Essential information

Published
18/11/2024 19:19
Modified
19/11/2024 09:34
Tags
2024-11-18 CVE-2024-0012 CVE-2024-9474 authentication bypass critical vulnerability pan-os privilege-escalation rce vpn
Related entities
9 techniques (mitre), 4 others

Description

Two critical vulnerabilities in Palo Alto Networks , and , have been disclosed. is an allowing unauthenticated remote attackers to gain admin privileges, while is an authenticated privilege escalation bug. These can be chained for full system compromise. Active exploitation has been observed for . Affected versions include 10.2, 11.0, 11.1, and 11.2. Patches are available, and organizations are urged to update immediately. Censys identified 13,324 publicly exposed NGFW management interfaces, with 34% in the US. Limiting public exposure and upgrading to 10.2 or later is recommended.

External references