VYPR
Medium severity6.5NVD Advisory· Published Nov 14, 2024· Updated Jun 17, 2026

CVE-2024-5919

CVE-2024-5919

Description

A blind XML External Entities (XXE) injection vulnerability in the Palo Alto Networks PAN-OS software enables an authenticated attacker to exfiltrate arbitrary files from firewalls to an attacker controlled server. This attack requires network access to the firewall management interface.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.