Loading HuntDB...

CVE-2024-5916

UNKNOWN
Published 2024-08-14T16:41:15.812Z
Actions:

Expert Analysis

Professional remediation guidance

Get tailored security recommendations from our analyst team for CVE-2024-5916. We'll provide specific mitigation strategies based on your environment and risk profile.

No CVSS data available

Description

An information exposure vulnerability in Palo Alto Networks PAN-OS software enables a local system administrator to unintentionally disclose secrets, passwords, and tokens of external systems. A read-only administrator who has access to the config log, can read secrets, passwords, and tokens to external systems.

Available Exploits

No exploits available for this CVE.

Related News

CVE-2023-48795 Impact of Terrapin SSH Attack (Severity: MEDIUM)

Related content: PAN-SA-2025-0013 Chromium: Monthly Vulnerability Update (July 2025) (Severity: HIGH) CVE-2024-5916 PAN-OS: Cleartext Exposure of External System Secrets (Severity: MEDIUM) CVE-2025-4227 GlobalProtect App: Interception in Endpoint Traffic Poli…

Paloaltonetworks.com 2025-07-15 21:25
PAN-SA-2025-0009 Chromium: Monthly Vulnerability Update (May 2025) (Severity: HIGH)

Related content: PAN-SA-2025-0010 Informational Bulletin: No Impact of the Marvin Attack on PAN-OS (Severity: INFORMATIONAL) CVE-2024-5916 PAN-OS: Cleartext Exposure of External System Secrets (Severity: MEDIUM) CVE-2025-0132 Cortex XDR Broker VM: Unauthentic…

Paloaltonetworks.com 2025-05-14 17:00
CVE-2025-0132 Cortex XDR Broker VM: Unauthenticated User Can Disable Internal Services (Severity: LOW)

Related content: PAN-SA-2025-0009 Chromium: Monthly Vulnerability Update (May 2025) (Severity: HIGH) CVE-2024-5916 PAN-OS: Cleartext Exposure of External System Secrets (Severity: MEDIUM) CVE-2025-0133 PAN-OS: Reflected Cross-Site Scripting (XSS) Vulnerabilit…

Paloaltonetworks.com 2025-05-14 16:00
PAN-SA-2025-0010 Informational Bulletin: No Impact of the Marvin Attack on PAN-OS (Severity: INFORMATIONAL)

Related content: PAN-SA-2025-0009 Chromium: Monthly Vulnerability Update (May 2025) (Severity: HIGH) CVE-2024-5916 PAN-OS: Cleartext Exposure of External System Secrets (Severity: MEDIUM) CVE-2025-0132 Cortex XDR Broker VM: Unauthenticated User Can Disable In…

Paloaltonetworks.com 2025-05-14 16:00
CVE-2025-0135 GlobalProtect App on macOS: Non Admin User Can Disable the GlobalProtect App (Severity: LOW)

Related content: PAN-SA-2025-0009 Chromium: Monthly Vulnerability Update (May 2025) (Severity: HIGH) CVE-2024-5916 PAN-OS: Cleartext Exposure of External System Secrets (Severity: MEDIUM) CVE-2025-0132 Cortex XDR Broker VM: Unauthenticated User Can Disable In…

Paloaltonetworks.com 2025-05-14 16:00

Affected Products

GitHub Security Advisories

Community-driven vulnerability intelligence from GitHub

⚠ Unreviewed MODERATE

GHSA-cvjp-23hx-635r

Advisory Details

An information exposure vulnerability in Palo Alto Networks PAN-OS software enables a local system administrator to unintentionally disclose secrets, passwords, and tokens of external systems. A read-only administrator who has access to the config log, can read secrets, passwords, and tokens to external systems.

CVSS Scoring

CVSS Score

5.0

CVSS Vector

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

Advisory provided by GitHub Security Advisory Database. Published: August 14, 2024, Modified: August 20, 2024

References

Published: 2024-08-14T16:41:15.812Z
Last Modified: 2025-04-30T18:33:26.243Z
Copied to clipboard!