CVE-2013-5663

Description

The App-ID cache feature in Palo Alto Networks PAN-OS before 4.0.14, 4.1.x before 4.1.11, and 5.0.x before 5.0.2 allows remote attackers to bypass intended security policies via crafted requests that trigger invalid caching, as demonstrated by incorrect identification of HTTP traffic as SIP traffic, aka Ref ID 47195.

Risk Information

Base Score
3.7
MODERATE
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
EPSS Score
Exploitation Probability
0.606

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities affected in pan-os 4.0.7NCM
Multiple Vulnerabilities affected in pan-os 4.0.4NCM
Multiple Vulnerabilities affected in pan-os 4.0.3NCM
Multiple Vulnerabilities affected in pan-os 4.1.0NCM
Multiple Vulnerabilities affected in pan-os 4.1.1NCM
Multiple Vulnerabilities affected in pan-os 4.1.2NCM
Multiple Vulnerabilities affected in pan-os 4.0.8NCM
Multiple Vulnerabilities affected in pan-os 4.1.3NCM
Multiple Vulnerabilities affected in pan-os 5.0.0-h1NCM
Multiple Vulnerabilities affected in pan-os 5.0.0NCM
Multiple Vulnerabilities affected in pan-os 4.1.10NCM
Multiple Vulnerabilities affected in pan-os 4.1.9NCM
Multiple Vulnerabilities affected in pan-os 4.1.8-h3NCM
Multiple Vulnerabilities affected in pan-os 4.1.8NCM
Multiple Vulnerabilities affected in pan-os 4.1.7NCM
Multiple Vulnerabilities affected in pan-os 4.1.6NCM
Multiple Vulnerabilities affected in pan-os 4.1.5NCM
Multiple Vulnerabilities affected in pan-os 4.1.4NCM
Multiple Vulnerabilities affected in pan-os 3.1.12NCM
Multiple Vulnerabilities affected in pan-os 3.1.11NCM
Multiple Vulnerabilities affected in pan-os 3.1.10NCM
Multiple Vulnerabilities affected in pan-os 3.1.9NCM
Multiple Vulnerabilities affected in pan-os 3.1NCM
Multiple Vulnerabilities affected in pan-os 3.0NCM
Multiple Vulnerabilities affected in pan-os 2.1NCM
Multiple Vulnerabilities affected in pan-os 2.0NCM
Multiple Vulnerabilities affected in pan-os 1.3NCM
Multiple Vulnerabilities affected in pan-os 4.0.6NCM
Multiple Vulnerabilities affected in pan-os 4.0.5NCM
Multiple Vulnerabilities affected in pan-os 4.0.2NCM
Multiple Vulnerabilities affected in pan-os 4.0.1NCM
Multiple Vulnerabilities affected in pan-os 4.0.0NCM
CVE-2013-5663NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234