Medium
Palo Alto Networks PAN-OS could allow a local authenticated attacker to obtain sensitive information, caused by the use of a weak cryptographic algorithm. By utilize password cracking attack techniques against accounts in normal (non-FIPS-CC) operational mode, an attacker could exploit this vulnerability to obtain password information, and use this information to launch further attacks against the affected system.
Refer to Palo Alto Networks Security Advisories for patch, upgrade or suggested workaround information.