s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

CVE-2021-3034 medium

📛 Threat Title

Cortex XSOAR: Secrets for SAML single sign-on (SSO) integration may be logged in system logs

Category: vulnerability Published: Source updated: First seen: Last updated: Source: Paloalto Networks Security

Description

An information exposure through log file vulnerability exists in Cortex XSOAR software where the secrets configured for the SAML single sign-on (SSO) integration can be logged to the '/var/log/demisto...

Indicators of Compromise (1)

Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.

cve CVE-2021-3034

IOC database

Type
cve
Value
CVE-2021-3034
First seen
Last seen
Attached to this threat
Appears in
1 threat
Description
Cortex XSOAR: Secrets for SAML single sign-on (SSO) integration may be logged in system logs

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

References (1)

  • Palo Alto Networks advisory: CVE-2021-3034 Paloalto Networks Security

    An information exposure through log file vulnerability exists in Cortex XSOAR software where the secrets configured for the SAML single sign-on (SSO) integration can be logged to the '/var/log/demisto...

Remediations (8)

  • web:federalnewsnetwork.com

    AI drives new debate around CISA software patching deadlines CISA this year has already started accelerating the deadlines for agencies to patch software bugs posted to the Known Exploited Vulnerabilities (KEV) catalog.

  • web:portal.msrc.microsoft.com

    The Security Update Guide provides information on the latest Microsoft security updates, helping users understand and address potential vulnerabilities effectively.

  • web:support.microsoft.com

    Summary Improvements and fixes included in this update How to obtain and install the update How to obtain or download the latest cumulative update package for Linux More information File information Information about protection and security Summary This security update contains fixes and resolves vulnerabilities. To learn more about the vulnerabilities, see the following security advisories ...

  • web:windowsreport.com

    Microsoft has released its May 2026 Patch Tuesday updates for Windows 11 and Windows 10, shipping as KB5089549 and KB5087544. The updates include fixes for more than 130 security vulnerabilities across Windows, Office, SharePoint, DNS components, and core system services, as Bleeping Computer writes. While no publicly disclosed zero-day vulnerabilities were reported this month, the […]

  • web:www.bleepingcomputer.com

    Today is Microsoft's January 2026 Patch Tuesday with security updates for 114 flaws, including one actively exploited and two publicly disclosed zero-day vulnerabilities.

  • web:www.ninjaone.com

    Community and technical sentiment regarding KB5087054 remains neutral to positive, primarily because the patch addresses legitimate security concerns without introducing reported complications during initial deployment phases. The absence of documented known issues from Microsoft's official channels suggests a relatively stable release profile.

  • web:www.techrepublic.com

    Microsoft's April 2026 Patch Tuesday fixes 165 vulnerabilities, including two zero-days, in one of the company's largest monthly security updates.

  • web:www.windowscentral.com

    A faulty BitLocker configuration is forcing some PCs into BitLocker recovery mode after the April 2026 update, but there's a workaround to resolve this issue.

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.