PatchSiren

PatchSiren cyber security CVE debrief

CVE-2024-5913 Siemens CVE debrief

An improper input validation vulnerability in Palo Alto Networks PAN-OS software enables an attacker with the ability to tamper with the physical file system to elevate privileges. This vulnerability affects the Siemens RUGGEDCOM APE1808 industrial computing platform, which runs Palo Alto Networks Virtual NGFW. The issue requires physical access to the device, limiting remote exploitation risk. The vulnerability was disclosed on July 9, 2024, and has been addressed in Palo Alto Networks Virtual NGFW V11.1.4-h1. Organizations should upgrade affected systems and apply network segmentation controls to reduce exposure.

Vendor
Siemens
Product
RUGGEDCOM APE1808
CVSS
MEDIUM 6.8
CISA KEV
Not listed in stored evidence
Original CVE published
2024-07-09
Original CVE updated
2026-01-14
Advisory published
2024-07-09
Advisory updated
2026-01-14

Who should care

Organizations operating Siemens RUGGEDCOM APE1808 devices with Palo Alto Networks Virtual NGFW in industrial environments, critical infrastructure operators, OT security teams, and asset owners responsible for maintaining secure configurations of industrial network security appliances.

Technical summary

CVE-2024-5913 is an improper input validation vulnerability in Palo Alto Networks PAN-OS software. The vulnerability allows an attacker with physical file system access to elevate privileges. The attack vector is physical (AV:P), with low attack complexity (AC:L) and no privileges required (PR:N). The vulnerability has high impact on confidentiality, integrity, and availability (C:H/I:H/A:H). This affects the Siemens RUGGEDCOM APE1808, an industrial computing platform that runs Palo Alto Networks Virtual NGFW. The vulnerability was remediated in Palo Alto Networks Virtual NGFW V11.1.4-h1. The CVSS v3.1 base score is 6.8 (Medium severity).

Defensive priority

medium

Recommended defensive actions

  • Upgrade Palo Alto Networks Virtual NGFW to version V11.1.4-h1 or later. Contact customer support to receive patch and update information.
  • Restrict physical access to RUGGEDCOM APE1808 devices to authorized personnel only.
  • Implement network segmentation to isolate management interfaces from operational networks.
  • Apply defense-in-depth strategies for industrial control systems per CISA guidance.

Evidence notes

CVE published 2024-07-09. CISA CSAF advisory ICSA-24-193-11 published same date. Advisory revised multiple times through January 2026 to add related CVEs and fix version information. Vendor fix identified as Palo Alto Networks Virtual NGFW V11.1.4-h1.

Sources and references

Verified primary and authoritative sources

  • CVE-2024-5913 CVE Program record

    Publisher, destination, and source semantics verified

    URL: https://www.cve.org/CVERecord?id=CVE-2024-5913

    CVE Program - Official CVE Program record with source-provided CVE metadata.

  • CVE-2024-5913 NVD vulnerability detail

    Publisher, destination, and source semantics verified

    URL: https://nvd.nist.gov/vuln/detail/CVE-2024-5913

    NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.

Supplemental references

  • Source item URL

    Unverified legacy reference

    URL: https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/OT/white/2024/icsa-24-193-11.json

    cisa_csaf

  • Source reference

    Unverified legacy reference

    URL: https://cert-portal.siemens.com/productcert/csaf/ssa-364175.json

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://cert-portal.siemens.com/productcert/html/ssa-364175.html

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://www.cisa.gov/news-events/ics-advisories/icsa-24-193-11

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://www.cisa.gov/news-events/ics-alerts/ics-alert-10-301-01

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://www.cisa.gov/resources-tools/resources/ics-recommended-practices

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://www.cisa.gov/topics/industrial-control-systems

    Reference

  • Source reference

    Unverified legacy reference

    URL: https://www.cisa.gov/sites/default/files/recommended_practices/NCCIC_ICS-CERT_Defense_in_Depth_2016_S508C.pdf

    Reference

Methodology and review provenance

AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.