CVE-2019-1583

HIGH

Palo Alto Networks Twistlock <19.07.358 - Privilege Escalation

Title source: llm
STIX 2.1

Description

Escalation of privilege vulnerability in the Palo Alto Networks Twistlock console 19.07.358 and earlier allows a Twistlock user with Operator capabilities to escalate privileges to that of another user. Active interaction with an affected component is required for the payload to execute on the victim.

References (1)

Core 1
Core References
Various Sources x_refsource_confirm
https://security.paloaltonetworks.com/CVE-2019-1583

Scores

CVSS v3 8.0
EPSS 0.0041
EPSS Percentile 61.5%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-79
Status published
Products (1)
paloaltonetworks/twistlock < 19.07.357
Published Aug 23, 2019
Tracked Since Feb 18, 2026