/CVE-2024-3400

Simple Python code to check for arbitrary uploading for PaloAlto CVE-2024-3400

Primary LanguagePythonGNU General Public License v3.0GPL-3.0

CVE-2024-3400

Simple Python code to check for arbitrary uploading to a PaloAlto

Simply checks for status codes returned from the paloalto before and after file creation. This creates a randomly generated filename and attempts to call it back after post.

This will save a file to your PaloAlto if vulnerable that you will need to clean up afterwards.

Used information from https://github.com/h4x0r-dz/CVE-2024-3400 and rapid7 analysis https://attackerkb.com/topics/SSTk336Tmf/cve-2024-3400/rapid7-analysis?referrer=home