![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
CVE ID: | CVE-2016-9149 |
Description: | The Addresses Object parser in Palo Alto Networks PAN-OS before 5.0.20, 5.1.x before 5.1.13, 6.0.x before 6.0.15, 6.1.x before 6.1.15, 7.0.x before 7.0.11, and 7.1.x before 7.1.6 mishandles single quote characters, which allows remote authenticated users to conduct XPath injection attacks via a crafted string. |
Test IDs: | 1.3.6.1.4.1.25623.1.0.140071 1.3.6.1.4.1.25623.1.0.140073 |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2016-9149 BugTraq ID: 94401 http://www.securityfocus.com/bid/94401 http://www.securitytracker.com/id/1037379 |