← العودة للجدول
CVE-2021-3044
CVE-2021-3044 — An improper authorization vulnerability in Palo Alto Networks Cortex XSOAR enabl
📅 2021-06-22
🔴 Critical 🔥 No NVD Exploit Palo Alto CVSS 9.8 🎯 EPSS 0.36%

📋 الوصف الكامل

An improper authorization vulnerability in Palo Alto Networks Cortex XSOAR enables a remote unauthenticated attacker with network access to the Cortex XSOAR server to perform unauthorized actions through the REST API. This issue impacts: Cortex XSOAR 6.1.0 builds later than 1016923 and earlier than 1271064; Cortex XSOAR 6.2.0 builds earlier than 1271065. This issue does not impact Cortex XSOAR 5.5

💻 الأنظمة المتأثرة

Palo Alto PAN-OS 11.x

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2021-3044

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2021-3044 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←