Vulnerabilities > CVE-2017-17841 - Unspecified vulnerability in Paloaltonetworks Pan-Os
Attack vector
NETWORK Attack complexity
HIGH Privileges required
NONE Confidentiality impact
HIGH Integrity impact
NONE Availability impact
NONE Summary
Palo Alto Networks PAN-OS 6.1, 7.1, and 8.0.x before 8.0.7, when an interface implements SSL decryption with RSA enabled or hosts a GlobalProtect portal or gateway, might allow remote attackers to decrypt TLS ciphertext data by leveraging a Bleichenbacher RSA padding oracle, aka a ROBOT attack.
Vulnerable Configurations
Nessus
NASL family | Palo Alto Local Security Checks |
NASL id | PALO_ALTO_PAN-OS_8_0_7.NASL |
description | The version of Palo Alto Networks PAN-OS running on the remote host is 7.1.x prior to 7.1.15 or 8.0.x prior to 8.0.7. It is, therefore, affected by multiple vulnerabilities. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 106143 |
published | 2018-01-18 |
reporter | This script is Copyright (C) 2018 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/106143 |
title | Palo Alto Networks PAN-OS 7.1.x < 7.1.15 / 8.0.x < 8.0.7 Multiple Vulnerabilities (ROBOT) |