CVE-2023-0004 is a local file deletion vulnerability in Palo Alto Networks PAN-OS software, affecting both PAN-OS and Fedora distributions. An authenticated administrator can exploit this to delete critical system files, impacting the integrity and availability of the PAN-OS software. The vulnerability has a CVSS score of 6.5 (Medium), indicating that it can be exploited remotely with low attack complexity by a highly privileged user, leading to high impact on integrity and availability. Currently, there is no evidence of active exploitation, nor are there publicly available exploit codes or significant community discussion surrounding this CVE. It is not listed in CISA's KEV catalog.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 8.1.0, < 8.1.24CPE matchmatch criteria | cpe:2.3:o:paloaltonetworks:pan-os:*:*:*:*:*:*:*:* | ||
>= 9.0.0, < 9.0.17CPE matchmatch criteria | cpe:2.3:o:paloaltonetworks:pan-os:*:*:*:*:*:*:*:* | ||
>= 9.1.0, < 9.1.15CPE matchmatch criteria | cpe:2.3:o:paloaltonetworks:pan-os:*:*:*:*:*:*:*:* | ||
>= 10.0.0, < 10.0.11CPE matchmatch criteria | cpe:2.3:o:paloaltonetworks:pan-os:*:*:*:*:*:*:*:* | ||
>= 10.1.0, < 10.1.6CPE matchmatch criteria | cpe:2.3:o:paloaltonetworks:pan-os:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.