Input validation error in Palo Alto PAN-OS - CVE-2015-4162
Published: June 2, 2015 / Updated: August 9, 2020
Palo Alto PAN-OS
Detailed vulnerability description
The vulnerability allows a remote #AU# to gain access to sensitive information.
XML external entity (XXE) vulnerability in the management interface in PAN-OS before 5.0.16, 6.x before 6.0.8, and 6.1.x before 6.1.4 allows remote authenticated administrators to obtain sensitive information via crafted XML data. <a href="http://cwe.mitre.org/data/definitions/611.html">CWE-611: Improper Restriction of XML External Entity Reference ('XXE')</a>