PatchSiren cyber security CVE debrief
CVE-2023-0008 Siemens CVE debrief
A file disclosure vulnerability in Palo Alto Networks PAN-OS software enables an authenticated read-write administrator with access to the web interface to export local files from the firewall through a race condition. The vulnerability was published on 2024-04-09 and last modified on 2024-12-10. The CVSS v3.1 score is 4.4 (MEDIUM severity). The affected product is Siemens RUGGEDCOM APE1808, as identified in the CISA CSAF advisory ICSA-24-102-03. The vendor has provided a fix: upgrade to Palo Alto Networks Virtual NGFW V11.0.1 and contact Siemens customer support for patch and update information.
- Vendor
- Siemens
- Product
- RUGGEDCOM APE1808
- CVSS
- MEDIUM 4.4
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2024-04-09
- Original CVE updated
- 2024-12-10
- Advisory published
- 2024-04-09
- Advisory updated
- 2024-12-10
Who should care
Organizations operating Siemens RUGGEDCOM APE1808 devices with Palo Alto Networks PAN-OS software, particularly those in industrial control system (ICS/OT) environments where firewall integrity is critical for network segmentation and security.
Technical summary
This vulnerability exists in Palo Alto Networks PAN-OS software and allows an authenticated read-write administrator with web interface access to exploit a race condition to export local files from the firewall. The attack requires network access (AV:N), high attack complexity (AC:H), and high privileges (PR:H). The confidentiality impact is high (C:H) with no integrity or availability impact. The vulnerability is exploitable in the wild (E:P) with a fix available (RL:O).
Defensive priority
medium
Recommended defensive actions
- Apply the vendor-provided upgrade to Palo Alto Networks Virtual NGFW V11.0.1
- Contact Siemens customer support to receive patch and update information
- Review and implement CISA ICS recommended practices for defense-in-depth security
- Monitor for additional updates to CISA advisory ICSA-24-102-03, which has been revised twice since initial publication
Evidence notes
The vulnerability description and remediation details are sourced from CISA CSAF advisory ICSA-24-102-03. The affected product (Siemens RUGGEDCOM APE1808) and vendor fix information are explicitly documented in the source material.
Official resources
-
CVE-2023-0008 CVE record
CVE.org
-
CVE-2023-0008 NVD detail
NVD
-
Source item URL
cisa_csaf
-
Source reference
Reference
-
Source reference
Reference
-
Source reference
Reference
-
Source reference
Reference
-
Source reference
Reference
-
Source reference
Reference
-
Source reference
Reference
This vulnerability was disclosed through CISA's CSAF feed and Siemens product security advisories. The advisory was initially published on 2024-04-09 and has been updated twice, most recently on 2024-12-10 to add newly published CVE-2024-59