A server-side request forgery in PAN-OS software enables an authenticated attacker with administrative privileges to use the administrative web interface as a proxy, which enables the attacker to view internal network resources not otherwise accessible.
CVE ID: CVE-2024-5917
CVSS Base Severity: LOW
CVSS Base Score: 2.1
Vendor: Palo Alto Networks
Product: Cloud NGFW
EPSS Score: 0.05% (probability of being exploited)
EPSS Percentile: 20.62% (scored less or equal to compared to others)
EPSS Date: 2025-02-13 (when was this score calculated)