Exploit to capitalize on vulnerability CVE-2020-2038.
According to Palo Alto Networks: An OS Command Injection vulnerability in the PAN-OS management interface that allows authenticated administrators to execute arbitrary OS commands with root privileges.
This issue impacts:
PAN-OS 9.0 versions earlier than 9.0.10
PAN-OS 9.1 versions earlier than 9.1.4
PAN-OS 10.0 versions earlier than 10.0.1
All credits go to Mikhail Klyuchnikov and Nikita Abramov of Positive Technologies who are the researchers who discovered this vulnerability. More info: https://swarm.ptsecurity.com/swarm-of-palo-alto-pan-os-vulnerabilities/