Palo Alto Networks Cortex XSOAR 6.0.1

CPE Details

Palo Alto Networks Cortex XSOAR 6.0.1
6.0.1
2021-03-18
16h37 +00:00
2021-04-12
13h25 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:paloaltonetworks:cortex_xsoar:6.0.1:-:*:*:*:*:*:*

Informations

Vendor

paloaltonetworks

Product

cortex_xsoar

Version

6.0.1

Update

-

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-3282 2023-11-08 17h22 +00:00 A local privilege escalation (PE) vulnerability in the Palo Alto Networks Cortex XSOAR engine software running on a Linux operating system enables a local attacker to execute programs with elevated privileges if the attacker has shell access to the engine.
6.7
Medium
CVE-2021-3034 2021-03-10 18h10 +00:00 An information exposure through log file vulnerability exists in Cortex XSOAR software where the secrets configured for the SAML single sign-on (SSO) integration can be logged to the '/var/log/demisto/' server logs when testing the integration during setup. This logged information includes the private key and identity provider certificate used to configure the SAML SSO integration. This issue impacts: Cortex XSOAR 5.5.0 builds earlier than 98622; Cortex XSOAR 6.0.1 builds earlier than 830029; Cortex XSOAR 6.0.2 builds earlier than 98623; Cortex XSOAR 6.1.0 builds earlier than 848144.
5.1
Medium