Medium severity4.1NVD Advisory· Published Apr 10, 2024· Updated Jun 17, 2026
CVE-2024-3388
CVE-2024-3388
Description
A vulnerability in the GlobalProtect Gateway in Palo Alto Networks PAN-OS software enables an authenticated attacker to impersonate another user and send network packets to internal assets. However, this vulnerability does not allow the attacker to receive response packets from those internal assets.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
148.1.0+ 9 more
- (no CPE)range: 8.1.0
- (no CPE)
- cpe:2.3:o:paloaltonetworks:pan-os:*:*:*:*:*:*:*:*range: >=8.1.0,<8.1.26
- cpe:2.3:o:paloaltonetworks:pan-os:9.0.17:-:*:*:*:*:*:*
- cpe:2.3:o:paloaltonetworks:pan-os:9.0.17:h1:*:*:*:*:*:*
- cpe:2.3:o:paloaltonetworks:pan-os:10.1.11:-:*:*:*:*:*:*
- cpe:2.3:o:paloaltonetworks:pan-os:10.1.11:h1:*:*:*:*:*:*
- cpe:2.3:o:paloaltonetworks:pan-os:10.1.11:h3:*:*:*:*:*:*
- cpe:2.3:o:paloaltonetworks:pan-os:10.2.7:-:*:*:*:*:*:*
- cpe:2.3:o:paloaltonetworks:pan-os:10.2.7:h1:*:*:*:*:*:*
- cpe:2.3:a:paloaltonetworks:prisma_access:-:*:*:*:*:*:*:*
- Range: All
- Range: 10.2
Patches
Vulnerability mechanics
References
1- security.paloaltonetworks.com/CVE-2024-3388nvdVendor Advisory
News mentions
0No linked articles in our index yet.