An information exposure vulnerability exists in Palo Alto Networks PAN-OS software that enables a GlobalProtect end user to learn both the configured GlobalProtect uninstall password and the configured disable or disconnect passcode. After the password or passcode is known, end users can uninstall, disable, or disconnect GlobalProtect even if the GlobalProtect app configuration would not normally permit them to do so.
References
Link | Resource |
---|---|
https://security.paloaltonetworks.com/CVE-2024-8687 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
AND |
|
History
No history.
Information
Published : 2024-09-11 17:15
Updated : 2024-10-03 00:26
NVD link : CVE-2024-8687
Mitre link : CVE-2024-8687
CVE.ORG link : CVE-2024-8687
JSON object : View
Products Affected
paloaltonetworks
- prisma_access
- pan-os
- globalprotect
CWE