#VU58108 OS Command Injection in Palo Alto PAN-OS - CVE-2021-3059
Published: November 11, 2021
Palo Alto PAN-OS
Palo Alto Networks, Inc.
Description
The vulnerability allows a remote attacker to execute arbitrary shell commands on the target system.
The vulnerability exists in the Palo Alto Networks PAN-OS management interface when performing dynamic updates. A remote attacker with ability to perform MitM (man-in-the-middle) attack can execute arbitrary OS commands on the system.