CVE-2021-3064

Description from NVD

A memory corruption vulnerability exists in Palo Alto Networks GlobalProtect portal and gateway interfaces that enables an unauthenticated network-based attacker to disrupt system processes and potentially execute arbitrary code with root privileges. The attacker must have network access to the GlobalProtect interface to exploit this issue. This issue impacts PAN-OS 8.1 versions earlier than PAN-OS 8.1.17. Prisma Access customers are not impacted by this issue.

Information Acquisition Date:2021-11-30T16:40Z
CVSS 2.0: 10.0 HIGH CVSS 3.x: 9.8 CRITICAL

▼ CVSS3 Vec CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

▼ CVSS2 Vec AV:N/AC:L/Au:N/C:C/I:C/A:C

NVD References

 N/A
     source:CONFIRM
     tags:Vendor Advisory    

This vulnerability may involve a PoC.

Refer to Information on External Sites

CVE InfomationExploits or more Infomation
mitreEXPLOIT DATABASE
NVD0day.today
vulmon.comgithub
CVE DetailsTwitter
JVN ENG JPN
Reconshell

Software Tag:



List of frequently cited URLs

URLNum of Times Referred to
https://thehackernews.com/2021/11/palo-alto-warns-of-zero-d...7
https://bit.ly/32eKXMY6
https://medium.com5
https://securityaffairs.co/wordpress/124481/hacking/palo-al...5
https://blog.google/threat-analysis-group/analyzing-waterin...4
https://twitter.com/RandoriAttack/status/14584802728281620564
https://threatpost.com/massive-zero-day-hole-found-in-palo-...4
https://www.jpcert.or.jp/newsflash/2021111201.html4
https://www.helpnetsecurity.com/2021/11/12/cve-2021-3064/?u...4
https://www.randori.com/blog/cve-2021-30643
https://blog.macnica.net/blog/2021/11/palo-alto-networkspan...3
https://www.secuavail.com/kb/nw-device/palo-alto-networks-c...3
http://feedproxy.google.com/~r/HelpNetSecurity/~3/N05uEZdbe48/3
https://securityboulevard.com/2021/11/palo-alto-zero-day-cv...3
https://security.paloaltonetworks.com/CVE-2021-30643

Information from Twitter

User URL Info Source Date
InsiderPhD https://twitter.com/InsiderPhD/status/1625043846638841859/p... Source InsiderPhD       1625043846638841859 2023/02/13

List of frequently cited URLs

URLNum of Times Referred to
thehackernews.com7
bit.ly6
medium.com5
securityaffairs.co5
blog.google4
twitter.com4
threatpost.com4
www.jpcert.or.jp4
www.helpnetsecurity.com4
www.randori.com3
blog.macnica.net3
www.secuavail.com3
feedproxy.google.com3
securityboulevard.com3
security.paloaltonetworks.com3

Information from Twitter

User URL Info Source
InsiderPhD twitter.com Show Tweet

GitHub Search Results: Up to 10
NameURL
fkm75P8YjLkb/CVE-2021-30641 https://github.com/fkm75P8YjLkb/CVE-2021-30641

GitHub Search Results: Up to 10
NameURL
fkm75P8YjLkb/CVE-2021-30641 github.com

2023/02/13 Score : 0
Added Har-sia Database : 2021/11/11
Last Modified : 2023/02/13
Highest Scored Date : 2021/11/11
Highest Score : 147