OS Command Injection in Palo Alto PAN-OS - CVE-2024-9474
Published: November 15, 2024 / Updated: June 13, 2025
Vulnerability details
The vulnerability allows a remote user to execute arbitrary shell commands on the target system.
The vulnerability exists due to an unspecified vulnerability related to improper input validation within the management interface. A remote user can send a specially crafted request to the system and execute arbitrary OS commands.
Note, the vulnerability is being actively exploited in the wild.
Affected software
RUGGEDCOM APE1808
How to mitigate CVE-2024-9474
Links to Public Exploits and PoC-codes
- Exploit #11637 - PanOsExploitMultitool (Exploitation and Post-Exploitation Multitool for Palo Alto PAN-OS Systems affected by vulnerabilities CVE-2024-0012 and CVE-2024-9474) (June 13, 2025)
- Exploit #11251 - CVE-2024-9474 (March 25, 2025)
- Exploit #11124 - cve-2024-0012-gui-poc (February 7, 2025)
- Exploit #11032 - Palo Alto Networks PAN-OS Management Interface Unauthenticated Remote Code Execution (December 30, 2024)
- Exploit #11013 - PAN-OS_CVE-2024-9474 (December 19, 2024)
- Exploit #10989 - CVE-2024-0012_CVE-2024-9474_PoC (December 13, 2024)
- Exploit #10904 - CVE-2024-9474 (November 22, 2024)
- Exploit #10898 - CVE-2024-9474 (PoC for PAN-OS Exploit) (November 22, 2024)