The vendor explicitly identifies these products as affected by this CVE.
- RUGGEDCOM APE1808
- Summary
- A command injection vulnerability in the Palo Alto Networks PAN-OS OpenConfig plugin enables an authenticated administrator with the ability to make gNMI requests to the PAN-OS management web interface to bypass system restrictions and run arbitrary commands. The commands are run as the “__openconfig” user (which has the Device Administrator role) on the firewall.
- Remediation
- Follow the remediation available in Palo Alto Networks' Security Advisory
