#VU63073 Input validation error in Palo Alto PAN-OS - CVE-2022-0024
Published: May 11, 2022
Palo Alto PAN-OS
Palo Alto Networks, Inc.
Description
The vulnerability allows a remote user to compromise the affected system.
The vulnerability exists due to insufficient validation of user-supplied input. A authenticated network-based PAN-OS administrator can upload a specifically created configuration that disrupts system processes and potentially execute arbitrary code with root privileges when the configuration is committed on both hardware and virtual firewalls.