CVE-2012-6601

EUVD-2012-6448
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.12, 4.0.x before 4.0.10, and 4.1.x before 4.1.4 allows remote attackers to execute arbitrary code via unspecified vectors, aka Ref ID 36983.
OS Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
10 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 93%
Affected Products (NVD)
VendorProductVersion
paloaltonetworkspan-os
𝑥
≤ 3.1.11
paloaltonetworkspan-os
3.1.9
paloaltonetworkspan-os
3.1.10
paloaltonetworkspan-os
4.0.0
paloaltonetworkspan-os
4.0.1
paloaltonetworkspan-os
4.0.2
paloaltonetworkspan-os
4.0.3
paloaltonetworkspan-os
4.0.4
paloaltonetworkspan-os
4.0.5
paloaltonetworkspan-os
4.0.6
paloaltonetworkspan-os
4.0.7
paloaltonetworkspan-os
4.0.8
paloaltonetworkspan-os
4.1.0
paloaltonetworkspan-os
4.1.1
paloaltonetworkspan-os
4.1.2
paloaltonetworkspan-os
4.1.3
𝑥
= Vulnerable software versions