CVE-2024-5914

A command injection issue in Palo Alto Networks Cortex XSOAR CommonScripts Pack allows an unauthenticated attacker to execute arbitrary commands within the context of an integration container.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:paloaltonetworks:cortex_xsoar_commonscripts:*:*:*:*:*:*:*:*

History

20 Aug 2024, 16:22

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
References () https://security.paloaltonetworks.com/CVE-2024-5914 - () https://security.paloaltonetworks.com/CVE-2024-5914 - Vendor Advisory
CPE cpe:2.3:a:paloaltonetworks:cortex_xsoar_commonscripts:*:*:*:*:*:*:*:*
First Time Paloaltonetworks
Paloaltonetworks cortex Xsoar Commonscripts
CWE CWE-77

14 Aug 2024, 17:49

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-14 17:15

Updated : 2024-08-20 16:22


NVD link : CVE-2024-5914

Mitre link : CVE-2024-5914


JSON object : View

Products Affected

paloaltonetworks

  • cortex_xsoar_commonscripts
CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')