RULE(RULE ID:333574)

Rule General Information
Release Date: 2021-05-13
Rule Name: Palo Alto Networks Management Interface Command Injection Vulnerability (CVE-2020-2038)
Severity:
CVE ID:
Rule Protection Details
Description: An OS Command Injection vulnerability in the PAN-OS management interface that allows authenticated administrators to execute arbitrary OS commands with root privileges. This issue impacts: PAN-OS 9.0 versions earlier than 9.0.10; PAN-OS 9.1 versions earlier than 9.1.4; PAN-OS 10.0 versions earlier than 10.0.1.
Impact: An attacker can execute arbitrary command via a successful exploit in the context of the vulnerable software.
Affected OS: Network Device
Reference: https://security.paloaltonetworks.com/CVE-2020-2038
Solutions
The vendor has released upgrade patches to fix vulnerabilities, please visit:
https://security.paloaltonetworks.com/CVE-2020-2038