Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-2031

Опубликовано: 08 июл. 2020
Источник: nvd
CVSS3: 4.9
CVSS2: 6.8
EPSS Низкий

Описание

An integer underflow vulnerability in the dnsproxyd component of the PAN-OS management interface allows authenticated administrators to issue a command from the command line interface that causes the component to stop responding. Repeated attempts to send this request result in denial of service to all PAN-OS services by restarting the device and putting it into maintenance mode. This issue impacts: PAN-OS 9.1 versions earlier than PAN-OS 9.1.3. This issue does not impact PAN-OS 8.1, PAN-OS 9.0, or Prisma Access services.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:paloaltonetworks:pan-os:*:*:*:*:*:*:*:*
Версия от 9.1.0 (включая) до 9.1.3 (исключая)

EPSS

Процентиль: 55%
0.00319
Низкий

4.9 Medium

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-191
CWE-191

Связанные уязвимости

github
больше 3 лет назад

An integer underflow vulnerability in the dnsproxyd component of the PAN-OS management interface allows authenticated administrators to issue a command from the command line interface that causes the component to stop responding. Repeated attempts to send this request result in denial of service to all PAN-OS services by restarting the device and putting it into maintenance mode. This issue impacts: PAN-OS 9.1 versions earlier than PAN-OS 9.1.3. This issue does not impact PAN-OS 8.1, PAN-OS 9.0, or Prisma Access services.

EPSS

Процентиль: 55%
0.00319
Низкий

4.9 Medium

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-191
CWE-191