KB-2301 Information about the PAN-OS Global Protect Command Injection Vulnerability (CVE-2024-3400)

On 12-Apr-2024, Palo Alto Networks released a security advisory regarding a command injection vulnerability in the GlobalProtect feature of Palo Alto Networks PAN-OS software. The same day, CISA released a concurrent security advisory and added the vulnerability to its Known Exploited Vulnerability Catalog.

Upon assessing the Appian platform against all details of the CVE, we can confirm that the Appian platform is not impacted by this vulnerability. We will continue to monitor the situation and provide any updates as appropriate.

Additional Notes:

The following CVE was released with additional information on the scope of the vulnerability:

  • CVE-2024-3400 (“Palo Alto Networks PAN-OS Command Injection Vulnerability”)

Supporting Documentation:

Affected Versions

This article applies to all supported versions of Appian.

Last reviewed: April 15, 2024

Related
Recommended