VDB

CVE-2023-0004

CVE-2023-0004 PUBLISHED CVSS 6.5 MEDIUM

A local file deletion vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to delete files from the local file system with elevated privileges. These files can include logs and system components that impact the integrity and availability of PAN-OS software.

EPSS 1.71% · 82.7th percentile

Risk Scores

CVSS 3.1
6.5
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H
EPSS Score
1.71%
82.7th percentile

Affected Products

VendorProductVersions
paloaltonetworkspan-os9.0.0, 10.0.0, 10.1.0
Palo Alto NetworksPrisma AccessAll
Palo Alto NetworksCloud NGFWAll
fedoraprojectfedora37, 38, 39
Palo Alto NetworksPAN-OS8.1, 9.0, 10.0

Timeline

  • Apr 12, 2023 CVE Published
  • Apr 13, 2023 EPSS Score
  • May 21, 2023 EPSS Score
  • Jun 27, 2023 EPSS Score
  • Aug 4, 2023 EPSS Score
  • Sep 11, 2023 EPSS Score
  • Oct 18, 2023 EPSS Score
  • Nov 25, 2023 EPSS Score
  • Jan 2, 2024 EPSS Score
  • Feb 9, 2024 EPSS Score
  • Mar 17, 2024 EPSS Score
  • Apr 24, 2024 EPSS Score

References

Open in Interactive Console →
$ Console Community · 100/wk Open console ›