Security Advisory

CVE-2024-5919

6.5
MEDIUM

Vulnerability Description

A blind XML External Entities (XXE) injection vulnerability in the Palo Alto Networks PAN-OS software enables an authenticated attacker to exfiltrate arbitrary files from firewalls to an attacker controlled server. This attack requires network access to the firewall management interface.
Published Date November 14, 2024
Official Source NIST NVD Advisory