---
availability: INSTALLABLE
description: A plugin that allows a user to lookup specific CVE information.
installation_asset_uuid: e86ab9bc-296c-46dc-a625-8d118c4c8a26
name: Look Up Information About a CVE
purple_chat_link: https://marketplace.moveworks.com/purple-chat?conversation=%7B%22startTimestamp%22%3A%2211%3A43+AM%22%2C%22messages%22%3A%5B%7B%22parts%22%3A%5B%7B%22richText%22%3A%22Can+you+give+me+information+on+CVE-2025-0116%3F%22%7D%5D%2C%22role%22%3A%22user%22%7D%2C%7B%22parts%22%3A%5B%7B%22reasoningSteps%22%3A%5B%7B%22richText%22%3A%22%3Cp%3ELooking+up+CVE+details%3C%2Fp%3E%22%2C%22status%22%3A%22success%22%7D%5D%7D%2C%7B%22richText%22%3A%22%3Cp%3EHere+are+the+details+for+CVE-2025-0116%3A%3C%2Fp%3E%22%7D%2C%7B%22richText%22%3A%22%3Col%3E%5Cn++%3Cli%3EDescription%3A+This+is+a+Denial+of+Service+%28DoS%29+vulnerability+in+Palo+Alto+Networks+PAN-+OS+software.+It+causes+the+firewall+to+unexpectedly+reboot+when+processing+a+specially+crafted+LLDP+frame+sent+by+an+unauthenticated+adjacent+attacker.+Repeated+attempts+can+cause+the+firewall+to+enter+maintenance+mode.+This+issue+does+not+apply+to+Cloud+NGFWs+or+Prisma+Access+software.%3C%2Fli%3E%5Cn++%3Cli%3EAffected+Versions%3A%5Cn++++%3Col%3E%5Cn++++++%3Cli%3EPAN-OS%3A+Versions+11.2.0%2C+11.1.0%2C+10.2.0%2C+and+10.1.0+are+affected.%3C%2Fli%3E%5Cn++++++%3Cli%3ECloud+NGFW+and+Prisma+Access%3A+All+versions+are+unaffected.%3C%2Fli%3E%5Cn++++%3C%2Fol%3E%5Cn++%3C%2Fli%3E%5Cn++%3Cli%3EConfigurations%3A+To+be+vulnerable%2C+LLDP+must+be+enabled+in+the+PAN-OS+software+and+on+at+least+one+network+interface.+The+LLDP+profile+associated+with+an+interface+must+have+the+%5C%22Mode%5C%22+configured+to+%5C%22transmit-receive%5C%22+or+%5C%22receive-only%5C%22.%3C%2Fli%3E%5Cn++%3Cli%3ESolutions%3A%5Cn++++%3Col%3E%5Cn++++++%3Cli%3EUpgrade+to+the+following+versions+to+mitigate+the+issue%3A%5Cn++++++++%3Col%3E%5Cn++++++++++%3Cli%3EPAN-OS+11.2%3A+Upgrade+to+11.2.5+or+later.%3C%2Fli%3E%5Cn++++++++++%3Cli%3EPAN-OS+11.1%3A+Upgrade+to+11.1.8+or+later.%3C%2Fli%3E%5Cn++++++++++%3Cli%3EPAN-OS+10.2%3A+Upgrade+to+10.2.14+or+later.%3C%2Fli%3E%5Cn++++++++++%3Cli%3EPAN-OS+10.1%3A+Upgrade+to+10.1.14-h11+or+later.%3C%2Fli%3E%5Cn++++++++%3C%2Fol%3E%5Cn++++++%3C%2Fli%3E%5Cn++++%3C%2Fol%3E%5Cn++%3C%2Fli%3E%5Cn++%3Cli%3EWorkarounds%3A%5Cn++++%3Col%3E%5Cn++++++%3Cli%3EOption+1%3A+Disable+LLDP+if+not+in+use.%3C%2Fli%3E%5Cn++++++%3Cli%3EOption+2%3A+Disable+LLDP+for+network+interfaces.%3C%2Fli%3E%5Cn++++++%3Cli%3EOption+3%3A+Set+LLDP+mode+to+%5C%22transmit-only%5C%22+if+used+only+for+advertising+information.%3C%2Fli%3E%5Cn++++%3C%2Fol%3E%5Cn++%3C%2Fli%3E%5Cn++%3Cli%3EExploits%3A+Palo+Alto+Networks+is+not+aware+of+any+malicious+exploitation+of+this+issue.%3C%2Fli%3E%5Cn++%3Cli%3EImpact%3A+The+vulnerability+is+classified+under+CAPEC-153+Input+Data+Manipulation.%3C%2Fli%3E%5Cn++%3Cli%3EMetrics%3A+The+CVSS+score+is+6.8%2C+indicating+a+medium+severity+level.%3C%2Fli%3E%5Cn%3C%2Fol%3E%5Cn%3Cp%3E%3Cbr%3E%5CnFor+more+detailed+information%2C+you+can+access+the+Palo+Alto+Networks+security+advisory.%3C%2Fp%3E%22%7D%5D%2C%22role%22%3A%22assistant%22%7D%5D%7D
solution_tags:
- IT
systems:
- palo-alto-networks
---
## Introduction
The **Lookup CVE Data** plugin enables users to fetch detailed information about a specific **Common Vulnerabilities and Exposures (CVE)** ID through the Moveworks AI Assistant. This helps security and IT teams quickly assess vulnerability severity, descriptions, and potential mitigation—all without switching tools.
This guide will help you install this plugin within minutes in Agent Studio. Let’s get started!
## Prerequisites
- Access to **Agent Studio**
## What are we building?
### Agent Design
This [purple chat](https://developer.moveworks.com/creator-studio/developer-tools/purple-chat?conversation=%7B%22startTimestamp%22%3A%2211%3A43+AM%22%2C%22messages%22%3A%5B%7B%22parts%22%3A%5B%7B%22richText%22%3A%22Can+you+give+me+information+on+CVE-2025-0116%3F%22%7D%5D%2C%22role%22%3A%22user%22%7D%2C%7B%22parts%22%3A%5B%7B%22reasoningSteps%22%3A%5B%7B%22richText%22%3A%22%3Cp%3ELooking+up+CVE+details%3C%2Fp%3E%22%2C%22status%22%3A%22success%22%7D%5D%7D%2C%7B%22richText%22%3A%22%3Cp%3EHere+are+the+details+for+CVE-2025-0116%3A%3C%2Fp%3E%22%7D%2C%7B%22richText%22%3A%22%3Col%3E%5Cn++%3Cli%3EDescription%3A+This+is+a+Denial+of+Service+%28DoS%29+vulnerability+in+Palo+Alto+Networks+PAN-+OS+software.+It+causes+the+firewall+to+unexpectedly+reboot+when+processing+a+specially+crafted+LLDP+frame+sent+by+an+unauthenticated+adjacent+attacker.+Repeated+attempts+can+cause+the+firewall+to+enter+maintenance+mode.+This+issue+does+not+apply+to+Cloud+NGFWs+or+Prisma+Access+software.%3C%2Fli%3E%5Cn++%3Cli%3EAffected+Versions%3A%5Cn++++%3Col%3E%5Cn++++++%3Cli%3EPAN-OS%3A+Versions+11.2.0%2C+11.1.0%2C+10.2.0%2C+and+10.1.0+are+affected.%3C%2Fli%3E%5Cn++++++%3Cli%3ECloud+NGFW+and+Prisma+Access%3A+All+versions+are+unaffected.%3C%2Fli%3E%5Cn++++%3C%2Fol%3E%5Cn++%3C%2Fli%3E%5Cn++%3Cli%3EConfigurations%3A+To+be+vulnerable%2C+LLDP+must+be+enabled+in+the+PAN-OS+software+and+on+at+least+one+network+interface.+The+LLDP+profile+associated+with+an+interface+must+have+the+%5C%22Mode%5C%22+configured+to+%5C%22transmit-receive%5C%22+or+%5C%22receive-only%5C%22.%3C%2Fli%3E%5Cn++%3Cli%3ESolutions%3A%5Cn++++%3Col%3E%5Cn++++++%3Cli%3EUpgrade+to+the+following+versions+to+mitigate+the+issue%3A%5Cn++++++++%3Col%3E%5Cn++++++++++%3Cli%3EPAN-OS+11.2%3A+Upgrade+to+11.2.5+or+later.%3C%2Fli%3E%5Cn++++++++++%3Cli%3EPAN-OS+11.1%3A+Upgrade+to+11.1.8+or+later.%3C%2Fli%3E%5Cn++++++++++%3Cli%3EPAN-OS+10.2%3A+Upgrade+to+10.2.14+or+later.%3C%2Fli%3E%5Cn++++++++++%3Cli%3EPAN-OS+10.1%3A+Upgrade+to+10.1.14-h11+or+later.%3C%2Fli%3E%5Cn++++++++%3C%2Fol%3E%5Cn++++++%3C%2Fli%3E%5Cn++++%3C%2Fol%3E%5Cn++%3C%2Fli%3E%5Cn++%3Cli%3EWorkarounds%3A%5Cn++++%3Col%3E%5Cn++++++%3Cli%3EOption+1%3A+Disable+LLDP+if+not+in+use.%3C%2Fli%3E%5Cn++++++%3Cli%3EOption+2%3A+Disable+LLDP+for+network+interfaces.%3C%2Fli%3E%5Cn++++++%3Cli%3EOption+3%3A+Set+LLDP+mode+to+%5C%22transmit-only%5C%22+if+used+only+for+advertising+information.%3C%2Fli%3E%5Cn++++%3C%2Fol%3E%5Cn++%3C%2Fli%3E%5Cn++%3Cli%3EExploits%3A+Palo+Alto+Networks+is+not+aware+of+any+malicious+exploitation+of+this+issue.%3C%2Fli%3E%5Cn++%3Cli%3EImpact%3A+The+vulnerability+is+classified+under+CAPEC-153+Input+Data+Manipulation.%3C%2Fli%3E%5Cn++%3Cli%3EMetrics%3A+The+CVSS+score+is+6.8%2C+indicating+a+medium+severity+level.%3C%2Fli%3E%5Cn%3C%2Fol%3E%5Cn%3Cp%3E%3Cbr%3E%5CnFor+more+detailed+information%2C+you+can+access+the+Palo+Alto+Networks+security+advisory.%3C%2Fp%3E%22%7D%5D%2C%22role%22%3A%22assistant%22%7D%5D%7D) shows the experience we are going to build.
## Installation Steps
We recommend creating the connector for [**Palo Alto Networks**](https://developer.moveworks.com/creator-studio/resources/connector?id=palo-alto-networks) first, prior to installing this plugin. Please follow the Palo Alto Networks Connector Guide to create the connector.
After you have configured the connector, please refer to our [plugin installation documentation](https://help.moveworks.com/docs/ai-agent-marketplace-installation) for more information on how to install a plugin.
## Appendix
**CVE Record Lookup API**
This plugin uses the following API from Palo Alto Networks to fetch CVE data:
```bash
curl -X GET "https://security.paloaltonetworks.com/json/CVE-2024-3400"
```