
Exploit for GlobalProtect CVE-2024-3400
Exploit pour GlobalProtect CVE-2024-3400
Cet exploit cible la vulnérabilité d'origine, donc le pare-feu doit exécuter une version vulnérable de PAN-OS et la télémétrie doit être activée.
Réf : https://labs.watchtowr.com/palo-alto-putting-the-protecc-in-globalprotect-cve-2024-3400/
Exemple de RCE avec un shell connecté à distance :

Sur l'hôte distant :
