Credentials management in Palo Alto PAN-OS - CVE-2012-6596
Published: August 31, 2013 / Updated: August 10, 2020
Palo Alto PAN-OS
Detailed vulnerability description
The vulnerability allows a remote non-authenticated attacker to gain access to sensitive information.
Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.3 stores cleartext LDAP bind passwords in authd.log, which allows context-dependent attackers to obtain sensitive information by reading this file, aka Ref ID 35493.