CVE-2013-5663 Information
Feb 14, 2021
cve
Description
The App-ID cache feature in Palo Alto Networks PAN-OS before 4.0.14 4.1.x before 4.1.11 and 5.0.x before 5.0.2 allows remote attackers to bypass intended security policies via crafted requests that trigger invalid caching as demonstrated by incorrect identification of HTTP traffic as SIP traffic aka Ref ID 47195.
Reference
http://cansecwest.com/csw11/Network20Application20FW20vs.20Contemporary20Threats20(Brad20Woodberg20-20Final).pptx http://pastie.org/pastes/5568186/text http://researchcenter.paloaltonetworks.com/2013/01/app-id-cache-pollution-update/ https://security.paloaltonetworks.com/CVE-2013-5663
Share on: