Back

HIGH

PAN-OS: Predictable temporary filename vulnerability allows local privilege escalation

Published Mar 11, 2020

Description

A predictable temporary filename vulnerability in PAN-OS allows local privilege escalation. This issue allows a local attacker who bypassed the restricted shell to execute commands as a low privileged user and gain root access on the PAN-OS hardware or virtual appliance. This issue affects only PAN-OS 8.1 versions earlier than PAN-OS 8.1.13. This issue does not affect PAN-OS 7.1, PAN-OS 9.0, or later PAN-OS versions.

Affected products

Remediation

Vendor solution

This issue is fixed in PAN-OS 8.1.13 and all later PAN-OS 8.1 versions.

Metrics

Weaknesses (2)

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner palo_alto
Published Mar 11, 2020
Updated Sep 17, 2024
Reserved Dec 4, 2019
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a