Palo Alto Networks Cortex XSOAR 6.6.0 2585049

CPE Details

Palo Alto Networks Cortex XSOAR 6.6.0 2585049
6.6.0
2022-11-09
18h07 +00:00
2022-11-09
18h49 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:paloaltonetworks:cortex_xsoar:6.6.0:2585049:*:*:*:*:*:*

Informations

Vendor

paloaltonetworks

Product

cortex_xsoar

Version

6.6.0

Update

2585049

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-3282 2023-11-08 17h22 +00:00 A local privilege escalation (PE) vulnerability in the Palo Alto Networks Cortex XSOAR engine software running on a Linux operating system enables a local attacker to execute programs with elevated privileges if the attacker has shell access to the engine.
6.7
Medium
CVE-2023-0003 2023-02-08 17h22 +00:00 A file disclosure vulnerability in the Palo Alto Networks Cortex XSOAR server software enables an authenticated user with access to the web interface to read local files from the server.
6.5
Medium
CVE-2022-0031 2022-11-09 17h24 +00:00 A local privilege escalation (PE) vulnerability in the Palo Alto Networks Cortex XSOAR engine software running on a Linux operating system allows a local attacker with shell access to the engine to execute programs with elevated privileges.
6.7
Medium
CVE-2022-0027 2022-05-11 16h30 +00:00 An improper authorization vulnerability in Palo Alto Network Cortex XSOAR software enables authenticated users in non-Read-Only groups to generate an email report that contains summary information about all incidents in the Cortex XSOAR instance, including incidents to which the user does not have access. This issue impacts: All versions of Cortex XSOAR 6.1; All versions of Cortex XSOAR 6.2; All versions of Cortex XSOAR 6.5; Cortex XSOAR 6.6 versions earlier than Cortex XSOAR 6.6.0 build 6.6.0.2585049.
4.3
Medium