Home/Product/paloaltonetworks pan os
Product

paloaltonetworks pan os

211 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-0300
all versions
A buffer overflow vulnerability in the User-ID™ Authentication Portal (aka Captive Portal) service of Palo Alto Networks PAN-OS
9.8CRITICAL
CVE-2026-0227
>= 10.1.0 and < 10.1.14
A vulnerability in Palo Alto Networks PAN-OS software enables an unauthenticated attacker to cause a denial of service (DoS) to th
7.5HIGH
CVE-2025-4615
>= 10.2.0 and < 10.2.17
An improper input neutralization vulnerability in the management web interface of the Palo Alto Networks PAN-OS® software enables
7.2HIGH
CVE-2025-4614
>= 10.2.0 and < 10.2.17
An information disclosure vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to view ses
2.7LOW
CVE-2025-4231
>= 10.2.0 and < 10.2.8
A command injection vulnerability in Palo Alto Networks PAN-OS® enables an authenticated administrative user to perform actions a
7.2HIGH
CVE-2025-0130
>= 11.1.0 and < 11.1.6
A missing exception check in Palo Alto Networks PAN-OS® software with the web proxy feature enabled allows an unauthenticated att
7.5HIGH
CVE-2025-0124
>= 10.1.0 and < 10.1.14
An authenticated file deletion vulnerability in the Palo Alto Networks PAN-OS® software enables an authenticated attacker with ne
3.8LOW
CVE-2025-0114
>= 10.1.0 and < 10.1.14
A Denial of Service (DoS) vulnerability in the GlobalProtect feature of Palo Alto Networks PAN-OS software enables an unauthentica
7.5HIGH
CVE-2025-0111
>= 10.1.0 and < 10.1.14
An authenticated file read vulnerability in the Palo Alto Networks PAN-OS software enables an authenticated attacker with network
6.5MEDIUM
CVE-2025-0108
>= 10.1.0 and < 10.1.14
An authentication bypass in the Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the
9.1CRITICAL
CVE-2024-3393
>= 11.1.0 and <= 11.1.1
A Denial of Service vulnerability in the DNS Security feature of Palo Alto Networks PAN-OS software allows an unauthenticated atta
7.5HIGH
CVE-2024-9474
>= 10.1.0 and < 10.1.14
A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS administrator with access to the manage
7.2HIGH
CVE-2024-0012
all versions
An authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the mana
9.8CRITICAL
CVE-2024-5920
>= 10.1.0 and < 10.1.14
A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS software enables an authenticated read-write Panorama admi
4.8MEDIUM
CVE-2024-5919
>= 10.1.0 and < 10.1.10
A blind XML External Entities (XXE) injection vulnerability in the Palo Alto Networks PAN-OS software enables an authenticated att
6.5MEDIUM
CVE-2024-5918
>= 10.1.0 and < 10.1.11
An improper certificate validation vulnerability in Palo Alto Networks PAN-OS software enables an authorized user with a specially
4.3MEDIUM
CVE-2024-5917
>= 10.1.0 and < 10.1.7
A server-side request forgery in PAN-OS software enables an authenticated attacker with administrative privileges to use the admin
4.9MEDIUM
CVE-2024-2552
>= 10.2.0 and < 10.2.7
A command injection vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to bypass system re
6.0MEDIUM
CVE-2024-2551
>= 10.1.0 and < 10.1.14
A null pointer dereference vulnerability in Palo Alto Networks PAN-OS software enables an unauthenticated attacker to stop a core
7.5HIGH
CVE-2024-2550
>= 10.2.0 and < 10.2.7
A null pointer dereference vulnerability in the GlobalProtect gateway in Palo Alto Networks PAN-OS software enables an unauthentic
7.5HIGH
CVE-2024-9471
>= 9.0.0 and < 10.0.0
A privilege escalation (PE) vulnerability in the XML API of Palo Alto Networks PAN-OS software enables an authenticated PAN-OS adm
4.7MEDIUM
CVE-2024-9468
>= 10.2.0 and < 10.2.4
A memory corruption vulnerability in Palo Alto Networks PAN-OS software allows an unauthenticated attacker to crash PAN-OS due to
7.5HIGH
CVE-2024-8691
>= 9.1.0 and < 9.1.17
A vulnerability in the GlobalProtect portal in Palo Alto Networks PAN-OS software enables a malicious authenticated GlobalProtect
7.1HIGH
CVE-2024-8688
>= 9.1.0 and < 9.1.15
An improper neutralization of matching symbols vulnerability in the Palo Alto Networks PAN-OS command line interface (CLI) enables
4.4MEDIUM
CVE-2024-8687
>= 8.1.0 and < 8.1.25
An information exposure vulnerability exists in Palo Alto Networks PAN-OS software that enables a GlobalProtect end user to learn
7.1HIGH
CVE-2024-8686
>= 11.2.0 and <= 11.2.2
A command injection vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to bypass system re
7.2HIGH
CVE-2024-5916
>= 10.2.0 and < 10.2.8
An information exposure vulnerability in Palo Alto Networks PAN-OS software enables a local system administrator to unintentionall
4.4MEDIUM
CVE-2024-5913
>= 10.1.0 and < 10.1.14
An improper input validation vulnerability in Palo Alto Networks PAN-OS software enables an attacker with the ability to tamper wi
6.1MEDIUM
CVE-2024-5911
>= 10.1.0 and < 10.1.9
An arbitrary file upload vulnerability in Palo Alto Networks Panorama software enables an authenticated read-write administrator w
4.9MEDIUM
CVE-2024-3400
all versions
A command injection as a result of arbitrary file creation vulnerability in the GlobalProtect feature of Palo Alto Networks PAN-OS
10.0CRITICAL
CVE-2024-3388
>= 8.1.0 and < 8.1.26
A vulnerability in the GlobalProtect Gateway in Palo Alto Networks PAN-OS software enables an authenticated attacker to impersonat
4.1MEDIUM
CVE-2024-3387
>= 10.1.0 and < 10.1.12
A weak (low bit strength) device certificate in Palo Alto Networks Panorama software enables an attacker to perform a meddler-in-t
5.3MEDIUM
CVE-2024-3386
>= 9.0.0 and < 9.0.16
An incorrect string comparison vulnerability in Palo Alto Networks PAN-OS software prevents Predefined Decryption Exclusions from
5.3MEDIUM
CVE-2024-3385
>= 9.0.0 and <= 9.0.16
A packet processing mechanism in Palo Alto Networks PAN-OS software enables a remote attacker to reboot hardware-based firewalls.
7.5HIGH
CVE-2024-3384
>= 8.1.0 and < 8.1.24
A vulnerability in Palo Alto Networks PAN-OS software enables a remote attacker to reboot PAN-OS firewalls when receiving Windows
7.5HIGH
CVE-2024-3383
>= 10.1.0 and < 10.1.11
A vulnerability in how Palo Alto Networks PAN-OS software processes data received from Cloud Identity Engine (CIE) agents enables
7.4HIGH
CVE-2024-3382
>= 10.2.0 and < 10.2.7
A memory leak exists in Palo Alto Networks PAN-OS software that enables an attacker to send a burst of crafted packets through the
7.5HIGH
CVE-2024-2433
< 9.0.17
An improper authorization vulnerability in Palo Alto Networks Panorama software enables an authenticated read-only administrator t
4.3MEDIUM
CVE-2024-0011
>= 8.1.0 and < 8.1.24
A reflected cross-site scripting (XSS) vulnerability in the Captive Portal feature of Palo Alto Networks PAN-OS software enables e
4.3MEDIUM
CVE-2024-0010
>= 10.1.0 and < 10.1.11
A reflected cross-site scripting (XSS) vulnerability in the GlobalProtect portal feature of Palo Alto Networks PAN-OS software ena
4.3MEDIUM
CVE-2024-0009
>= 10.2.0 and < 10.2.4
An improper verification vulnerability in the GlobalProtect gateway feature of Palo Alto Networks PAN-OS software enables a malici
6.3MEDIUM
CVE-2024-0008
>= 10.2.0 and < 10.2.5
Web sessions in the management interface in Palo Alto Networks PAN-OS software do not expire in certain situations, making it susc
6.6MEDIUM
CVE-2024-0007
>= 8.1.0 and < 8.1.24
A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS software enables a malicious authenticated read-write admi
6.8MEDIUM
CVE-2023-6795
>= 8.1.0 and < 8.1.24
An OS command injection vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to disrupt syst
5.5MEDIUM
CVE-2023-6794
>= 8.1.0 and < 8.1.26
An arbitrary file upload vulnerability in Palo Alto Networks PAN-OS software enables an authenticated read-write administrator wit
5.5MEDIUM
CVE-2023-6793
>= 9.1.0 and < 9.1.17
An improper privilege management vulnerability in Palo Alto Networks PAN-OS software enables an authenticated read-only administra
2.7LOW
CVE-2023-6792
>= 8.1.0 and < 8.1.24
An OS command injection vulnerability in the XML API of Palo Alto Networks PAN-OS software enables an authenticated API user to di
5.5MEDIUM
CVE-2023-6791
>= 8.1.0 and < 8.1.24
A credential disclosure vulnerability in Palo Alto Networks PAN-OS software enables an authenticated read-only administrator to ob
4.9MEDIUM
CVE-2023-6790
>= 8.1.0 and < 8.1.25
A DOM-Based cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS software enables a remote attacker to execute a
8.8HIGH
CVE-2023-6789
>= 8.1.0 and < 8.1.26
A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS software enables a malicious authenticated read-write admi
4.3MEDIUM
CVE-2023-38046
>= 10.2.0 and < 10.2.4
A vulnerability exists in Palo Alto Networks PAN-OS software that enables an authenticated administrator with the privilege to com
5.5MEDIUM
CVE-2023-0010
>= 8.1.0 and <= 8.1.24
A reflected cross-site scripting (XSS) vulnerability in the Captive Portal feature of Palo Alto Networks PAN-OS software can allow
5.4MEDIUM
CVE-2023-0008
>= 8.1.0 and < 8.1.25
A file disclosure vulnerability in Palo Alto Networks PAN-OS software enables an authenticated read-write administrator with acces
4.4MEDIUM
CVE-2023-0007
>= 8.1.0 and < 8.1.25
A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS software on Panorama appliances enables an authenticated r
6.5MEDIUM
CVE-2023-0005
>= 8.1.0 and < 8.1.24
A vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to expose the plaintext values of sec
4.1MEDIUM
CVE-2023-0004
>= 8.1.0 and < 8.1.24
A local file deletion vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to delete files f
6.5MEDIUM
CVE-2022-0030
>= 8.1.0 and < 8.1.24
An authentication bypass vulnerability in the Palo Alto Networks PAN-OS 8.1 web interface allows a network-based attacker with spe
8.1HIGH
CVE-2022-0028
>= 8.1.0 and < 8.1.23
A PAN-OS URL filtering policy misconfiguration could allow a network-based attacker to conduct reflected and amplified TCP denial-
8.6HIGH
CVE-2022-0024
>= 8.1.0 and < 8.1.23
A vulnerability exists in Palo Alto Networks PAN-OS software that enables an authenticated network-based PAN-OS administrator to u
7.2HIGH
CVE-2022-0023
>= 8.1.0 and < 8.1.22
An improper handling of exceptional conditions vulnerability exists in the DNS proxy feature of Palo Alto Networks PAN-OS software
5.9MEDIUM
CVE-2022-0022
>= 8.1.0 and < 8.1.21
Usage of a weak cryptographic algorithm in Palo Alto Networks PAN-OS software where the password hashes of administrator and local
4.1MEDIUM
CVE-2022-0011
>= 8.1.0 and < 8.1.21
PAN-OS software provides options to exclude specific websites from URL category enforcement and those websites are blocked or allo
6.5MEDIUM
CVE-2021-3064
>= 8.1.0 and < 8.1.17
A memory corruption vulnerability exists in Palo Alto Networks GlobalProtect portal and gateway interfaces that enables an unauthe
9.8CRITICAL
CVE-2021-3063
>= 8.1.0 and < 8.1.21
An improper handling of exceptional conditions vulnerability exists in Palo Alto Networks GlobalProtect portal and gateway interfa
7.5HIGH
CVE-2021-3062
>= 8.1.0 and < 8.1.20
An improper access control vulnerability in PAN-OS software enables an attacker with authenticated access to GlobalProtect portals
8.1HIGH
CVE-2021-3061
>= 8.1.0 and <= 8.1.20
An OS command injection vulnerability in the Palo Alto Networks PAN-OS command line interface (CLI) enables an authenticated admin
6.4MEDIUM
CVE-2021-3060
>= 8.1.0 and <= 8.1.20
An OS command injection vulnerability in the Simple Certificate Enrollment Protocol (SCEP) feature of PAN-OS software allows an un
8.1HIGH
CVE-2021-3059
>= 8.1.0 and <= 8.1.20
An OS command injection vulnerability in the Palo Alto Networks PAN-OS management interface exists when performing dynamic updates
8.1HIGH
CVE-2021-3058
>= 8.1.0 and <= 8.1.20
An OS command injection vulnerability in the Palo Alto Networks PAN-OS web interface enables an authenticated administrator with p
8.8HIGH
CVE-2021-3056
>= 8.1.0 and < 8.1.20
A memory corruption vulnerability in Palo Alto Networks PAN-OS GlobalProtect Clientless VPN enables an authenticated attacker to e
8.8HIGH
CVE-2021-3055
>= 8.1.0 and < 8.1.20
An improper restriction of XML external entity (XXE) reference vulnerability in the Palo Alto Networks PAN-OS web interface enable
6.5MEDIUM
CVE-2021-3054
>= 8.1.0 and < 8.1.20
A time-of-check to time-of-use (TOCTOU) race condition vulnerability in the Palo Alto Networks PAN-OS web interface enables an aut
7.2HIGH
CVE-2021-3053
>= 8.1.0 and < 8.1.20
An improper handling of exceptional conditions vulnerability exists in the Palo Alto Networks PAN-OS dataplane that enables an una
7.5HIGH
CVE-2021-3052
>= 8.1.0 and < 8.1.20
A reflected cross-site scripting (XSS) vulnerability in the Palo Alto Network PAN-OS web interface enables an authenticated networ
8.0HIGH
CVE-2021-3050
>= 9.0.0 and < 9.0.15
An OS command injection vulnerability in the Palo Alto Networks PAN-OS web interface enables an authenticated administrator to exe
8.8HIGH
CVE-2021-3048
>= 9.0.0 and < 9.0.14
Certain invalid URL entries contained in an External Dynamic List (EDL) cause the Device Server daemon (devsrvr) to stop respondin
5.9MEDIUM
CVE-2021-3047
>= 8.1.0 and < 8.1.19
A cryptographically weak pseudo-random number generator (PRNG) is used during authentication to the Palo Alto Networks PAN-OS web
4.2MEDIUM
CVE-2021-3046
>= 8.1.0 and < 8.1.19
An improper authentication vulnerability exists in Palo Alto Networks PAN-OS software that enables a SAML authenticated attacker t
6.8MEDIUM
CVE-2021-3045
>= 8.1.0 and < 8.1.19
An OS command argument injection vulnerability in the Palo Alto Networks PAN-OS web interface enables an authenticated administrat
4.9MEDIUM
CVE-2021-3037
>= 8.1.0 and < 8.1.19
An information exposure through log file vulnerability exists in Palo Alto Networks PAN-OS software where the connection details f
2.3LOW
CVE-2021-3036
>= 8.1.0 and < 8.1.19
An information exposure through log file vulnerability exists in Palo Alto Networks PAN-OS software where secrets in PAN-OS XML AP
4.4MEDIUM
CVE-2021-3032
>= 8.1.0 and < 8.1.18
An information exposure through log file vulnerability exists in Palo Alto Networks PAN-OS software where configuration secrets fo
4.4MEDIUM
CVE-2021-3031
>= 8.1.0 and < 8.1.18
Padding bytes in Ethernet packets on PA-200, PA-220, PA-500, PA-800, PA-2000 Series, PA-3000 Series, PA-3200 Series, PA-5200 Serie
4.3MEDIUM
CVE-2020-2050
>= 8.1.0 and < 8.1.17
An authentication bypass vulnerability exists in the GlobalProtect SSL VPN component of Palo Alto Networks PAN-OS software that al
8.2HIGH
CVE-2020-2048
>= 8.1.0 and < 8.1.17
An information exposure through log file vulnerability exists where the password for the configured system proxy server for a PAN-
3.3LOW
CVE-2020-2022
>= 8.1.0 and < 8.1.17
An information exposure vulnerability exists in Palo Alto Networks Panorama software that discloses the token for the Panorama web
7.5HIGH
CVE-2020-2000
>= 8.1.0 and < 8.1.16
An OS command injection and memory corruption vulnerability in the PAN-OS management web interface that allows authenticated admin
7.2HIGH
CVE-2020-1999
>= 7.1.0 and <= 7.1.26
A vulnerability exists in the Palo Alto Network PAN-OS signature-based threat detection engine that allows an attacker to communic
5.3MEDIUM
CVE-2020-2044
>= 8.0.0 and <= 8.0.20
An information exposure through log file vulnerability where an administrator's password or other sensitive information may be log
3.3LOW
CVE-2020-2043
>= 8.1.0 and <= 8.1.15
An information exposure through log file vulnerability where sensitive fields are recorded in the configuration log without maskin
3.3LOW
CVE-2020-2042
>= 10.0.0 and < 10.0.1
A buffer overflow vulnerability in the PAN-OS management web interface allows authenticated administrators to disrupt system proce
7.2HIGH
CVE-2020-2041
>= 8.0.0 and <= 8.0.20
An insecure configuration of the appweb daemon of Palo Alto Networks PAN-OS 8.1 allows a remote unauthenticated user to send a spe
7.5HIGH
CVE-2020-2040
>= 8.0.0 and <= 8.0.20
A buffer overflow vulnerability in PAN-OS allows an unauthenticated attacker to disrupt system processes and potentially execute a
9.8CRITICAL
CVE-2020-2039
>= 8.1.0 and < 8.1.16
An uncontrolled resource consumption vulnerability in Palo Alto Networks PAN-OS allows for a remote unauthenticated user to upload
5.3MEDIUM
CVE-2020-2038
>= 9.0.0 and < 9.0.10
An OS Command Injection vulnerability in the PAN-OS management interface that allows authenticated administrators to execute arbit
7.2HIGH
CVE-2020-2037
>= 8.1.0 and < 8.1.16
An OS Command Injection vulnerability in the PAN-OS management interface that allows authenticated administrators to execute arbit
7.2HIGH
CVE-2020-2036
>= 8.1.0 and < 8.1.16
A reflected cross-site scripting (XSS) vulnerability exists in the PAN-OS management web interface. A remote attacker able to conv
8.8HIGH
CVE-2020-2035
all versions
When SSL/TLS Forward Proxy Decryption mode has been configured to decrypt the web transactions, the PAN-OS URL filtering feature i
3.0LOW
CVE-2020-2034
>= 7.1.0 and <= 7.1.26
An OS Command Injection vulnerability in the PAN-OS GlobalProtect portal allows an unauthenticated network based attacker to execu
8.1HIGH
CVE-2020-2031
>= 9.1.0 and < 9.1.3
An integer underflow vulnerability in the dnsproxyd component of the PAN-OS management interface allows authenticated administrato
4.9MEDIUM
CVE-2020-2030
>= 7.1.0 and <= 7.1.26
An OS Command Injection vulnerability in the PAN-OS management interface that allows authenticated administrators to execute arbit
7.2HIGH
CVE-2020-1982
>= 8.0.0 and <= 8.0.20
Certain communication between PAN-OS and cloud-delivered services inadvertently use TLS 1.0, which is known to be a cryptographica
4.8MEDIUM
CVE-2020-2021
>= 8.0.0 and <= 8.0.20
When Security Assertion Markup Language (SAML) authentication is enabled and the 'Validate Identity Provider Certificate' option i
10.0CRITICAL
CVE-2020-2029
>= 7.1.0 and < 7.1.26
An OS Command Injection vulnerability in the PAN-OS web management interface allows authenticated administrators to execute arbitr
7.2HIGH
CVE-2020-2028
>= 7.1.0 and <= 7.1.26
An OS Command Injection vulnerability in PAN-OS management server allows authenticated administrators to execute arbitrary OS comm
7.2HIGH
CVE-2020-2027
>= 7.1.0 and <= 7.1.26
A buffer overflow vulnerability in the authd component of the PAN-OS management server allows authenticated administrators to disr
7.2HIGH
CVE-2020-2018
>= 7.1.0 and < 7.1.26
An authentication bypass vulnerability in the Panorama context switching feature allows an attacker with network access to a Panor
9.0CRITICAL
CVE-2020-2017
>= 7.1.0 and < 7.1.26
A DOM-Based Cross Site Scripting Vulnerability exists in PAN-OS and Panorama Management Web Interfaces. A remote attacker able to
8.8HIGH
CVE-2020-2016
>= 7.1.0 and < 7.1.26
A race condition due to insecure creation of a file in a temporary directory vulnerability in PAN-OS allows for root privilege esc
7.0HIGH
CVE-2020-2015
>= 7.1.0 and < 7.1.26
A buffer overflow vulnerability in the PAN-OS management server allows authenticated users to crash system processes or potentiall
8.8HIGH
CVE-2020-2014
>= 7.1.0 and <= 7.1.26
An OS Command Injection vulnerability in PAN-OS management server allows authenticated users to inject and execute arbitrary shell
8.8HIGH
CVE-2020-2013
>= 7.1.0 and <= 7.1.26
A cleartext transmission of sensitive information vulnerability in Palo Alto Networks PAN-OS Panorama that discloses an authentica
8.3HIGH
CVE-2020-2012
>= 7.1.0 and <= 7.1.26
Improper restriction of XML external entity reference ('XXE') vulnerability in Palo Alto Networks Panorama management service allo
7.5HIGH
CVE-2020-2011
>= 7.1.0 and <= 7.1.26
An improper input validation vulnerability in the configuration daemon of Palo Alto Networks PAN-OS Panorama allows for a remote u
7.5HIGH
CVE-2020-2010
>= 7.1.0 and <= 7.1.26
An OS command injection vulnerability in PAN-OS management interface allows an authenticated administrator to execute arbitrary OS
7.2HIGH
CVE-2020-2009
>= 7.1.0 and <= 7.1.26
An external control of filename vulnerability in the SD WAN component of Palo Alto Networks PAN-OS Panorama allows an authenticate
7.2HIGH
CVE-2020-2008
>= 7.1.0 and <= 7.1.26
An OS command injection and external control of filename vulnerability in Palo Alto Networks PAN-OS allows authenticated administr
7.2HIGH
CVE-2020-2007
>= 7.1.0 and <= 7.1.26
An OS command injection vulnerability in the management server component of PAN-OS allows an authenticated user to potentially exe
7.2HIGH
CVE-2020-2006
>= 7.1.0 and <= 7.1.26
A stack-based buffer overflow vulnerability in the management server component of PAN-OS that allows an authenticated user to pote
7.2HIGH
CVE-2020-2005
>= 7.1.0 and < 7.1.26
A cross-site scripting (XSS) vulnerability exists when visiting malicious websites with the Palo Alto Networks GlobalProtect Clien
7.1HIGH
CVE-2020-2003
>= 7.1.0 and <= 7.1.26
An external control of filename vulnerability in the command processing of PAN-OS allows an authenticated administrator to delete
6.5MEDIUM
CVE-2020-2002
>= 7.1.0 and < 7.1.26
An authentication bypass by spoofing vulnerability exists in the authentication daemon and User-ID components of Palo Alto Network
8.1HIGH
CVE-2020-2001
>= 7.1.0 and <= 7.1.26
An external control of path and data vulnerability in the Palo Alto Networks PAN-OS Panorama XSLT processing logic that allows an
8.1HIGH
CVE-2020-1998
>= 7.1.0 and < 7.1.26
An improper authorization vulnerability in PAN-OS that mistakenly uses the permissions of local linux users instead of the intende
5.4MEDIUM
CVE-2020-1997
>= 7.1.0 and < 7.1.26
An open redirection vulnerability in the GlobalProtect component of Palo Alto Networks PAN-OS allows an attacker to specify an arb
5.3MEDIUM
CVE-2020-1996
>= 7.1.0 and <= 7.1.26
A missing authorization vulnerability in the management server component of PAN-OS Panorama allows a remote unauthenticated user t
5.3MEDIUM
CVE-2020-1995
>= 9.1.0 and < 9.1.2
A NULL pointer dereference vulnerability in Palo Alto Networks PAN-OS allows an authenticated administrator to send a request that
4.9MEDIUM
CVE-2020-1994
>= 7.1.0 and <= 7.1.26
A predictable temporary file vulnerability in PAN-OS allows a local authenticated user with shell access to corrupt arbitrary syst
4.1MEDIUM
CVE-2020-1993
>= 7.1.0 and <= 7.1.26
The GlobalProtect Portal feature in PAN-OS does not set a new session identifier after a successful user login, which allows sessi
3.7LOW
CVE-2020-1992
>= 9.0.0 and < 9.0.7
A format string vulnerability in the Varrcvr daemon of PAN-OS on PA-7000 Series devices with a Log Forwarding Card (LFC) allows re
8.1HIGH
CVE-2020-1990
>= 8.1.0 and < 8.1.13
A stack-based buffer overflow vulnerability in the management server component of PAN-OS allows an authenticated user to upload a
7.2HIGH
CVE-2020-1978
all versions
TechSupport files generated on Palo Alto Networks VM Series firewalls for Microsoft Azure platform configured with high availabili
5.8MEDIUM
CVE-2020-1981
>= 8.1.0 and < 8.1.13
A predictable temporary filename vulnerability in PAN-OS allows local privilege escalation. This issue allows a local attacker who
7.0HIGH
CVE-2020-1980
>= 8.1.0 and < 8.1.13
A shell command injection vulnerability in the PAN-OS CLI allows a local authenticated user to escape the restricted shell and esc
7.8HIGH
CVE-2020-1979
< 8.1.13
A format string vulnerability in the PAN-OS log daemon (logd) on Panorama allows a network based attacker with knowledge of regist
8.1HIGH
CVE-2020-1975
>= 8.1.0 and < 8.1.12
Missing XML validation vulnerability in the PAN-OS web interface on Palo Alto Networks PAN-OS software allows authenticated users
6.8MEDIUM
CVE-2019-17440
>= 9.0 and <= 9.0.5
Improper restriction of communications to Log Forwarding Card (LFC) on PA-7000 Series devices with second-generation Switch Manage
10.0CRITICAL
CVE-2019-17437
>= 7.1.0 and < 7.1.25
An improper authentication check in Palo Alto Networks PAN-OS may allow an authenticated low privileged non-superuser custom role
7.8HIGH
CVE-2019-1582
>= 8.1.0 and <= 8.1.9
Memory corruption in PAN-OS 8.1.9 and earlier, and PAN-OS 9.0.3 and earlier will allow an administrative user to cause arbitrary m
7.2HIGH
CVE-2019-1581
<= 7.1.24
A remote code execution vulnerability in the PAN-OS SSH device management interface that can lead to unauthenticated remote users
9.8CRITICAL
CVE-2019-1580
<= 7.1.24
Memory corruption in PAN-OS 7.1.24 and earlier, PAN-OS 8.0.19 and earlier, PAN-OS 8.1.9 and earlier, and PAN-OS 9.0.3 and earlier
9.8CRITICAL
CVE-2019-1579
< 7.1.19
Remote Code Execution in PAN-OS 7.1.18 and earlier, PAN-OS 8.0.11-h1 and earlier, and PAN-OS 8.1.2 and earlier with GlobalProtect
8.1HIGH
CVE-2019-1576
>= 9.0.0 and <= 9.0.2
Command injection in PAN-0S 9.0.2 and earlier may allow an authenticated attacker to gain access to a remote shell in PAN-OS, and
8.8HIGH
CVE-2019-1575
< 7.1.24
Information disclosure in PAN-OS 7.1.23 and earlier, PAN-OS 8.0.18 and earlier, PAN-OS 8.1.8-h4 and earlier, and PAN-OS 9.0.2 and
8.8HIGH
CVE-2019-1572
all versions
PAN-OS 9.0.0 may allow an unauthenticated remote user to access php files.
7.5HIGH
CVE-2019-1559
>= 7.1.0 and < 7.1.15
If an application encounters a fatal protocol error and then calls SSL_shutdown() twice (once to send a close_notify, and once to
5.9MEDIUM
CVE-2019-1566
>= 7.1.0 and < 7.1.22
The PAN-OS management web interface in PAN-OS 7.1.21 and earlier, PAN-OS 8.0.14 and earlier, and PAN-OS 8.1.5 and earlier, may all
6.1MEDIUM
CVE-2019-1565
<= 7.1.21
The PAN-OS external dynamics lists in PAN-OS 7.1.21 and earlier, PAN-OS 8.0.14 and earlier, and PAN-OS 8.1.5 and earlier, may allo
5.4MEDIUM
CVE-2018-10141
< 6.1.0
GlobalProtect Portal Login page in Palo Alto Networks PAN-OS before 8.1.4 allows an unauthenticated attacker to inject arbitrary J
6.1MEDIUM
CVE-2018-18065
<= 7.1.22
_set_key in agent/helpers/table_container.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by an authent
6.5MEDIUM
CVE-2018-14634
>= 7.1.0 and < 7.1.23
An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileged local user with access to S
7.8HIGH
CVE-2018-10140
>= 8.1.0 and <= 8.1.2
The PAN-OS Management Web Interface in Palo Alto Networks PAN-OS 8.1.2 and earlier may allow an authenticated user to shut down al
4.3MEDIUM
CVE-2018-10139
<= 6.1.21
The PAN-OS response for GlobalProtect Gateway in Palo Alto Networks PAN-OS 6.1.21 and earlier, PAN-OS 7.1.18 and earlier, PAN-OS 8
6.1MEDIUM
CVE-2018-9337
> 6.0.0 and <= 6.1.20
The PAN-OS web interface administration page in PAN-OS 6.1.20 and earlier, PAN-OS 7.1.17 and earlier, PAN-OS 8.0.10 and earlier, a
5.4MEDIUM
CVE-2018-9335
> 6.0.0 and <= 6.1.20
The PAN-OS session browser in PAN-OS 6.1.20 and earlier, PAN-OS 7.1.16 and earlier, PAN-OS 8.0.9 and earlier, and PAN-OS 8.1.1 and
5.4MEDIUM
CVE-2018-9334
> 6.0.0 and <= 6.1.20
The PAN-OS management web interface page in PAN-OS 6.1.20 and earlier, PAN-OS 7.1.16 and earlier, PAN-OS 8.0.8 and earlier, and PA
5.5MEDIUM
CVE-2018-9242
> 6.0.0 and <= 6.1.20
The PAN-OS management web interface page in PAN-OS 6.1.20 and earlier, PAN-OS 7.1.16 and earlier, PAN-OS 8.0.9 and earlier may all
5.5MEDIUM
CVE-2018-7636
all versions
The URL filtering "continue page" hosted by PAN-OS 8.0.10 and earlier may allow an attacker to inject arbitrary JavaScript or HTML
6.1MEDIUM
CVE-2017-17841
all versions
Palo Alto Networks PAN-OS 6.1, 7.1, and 8.0.x before 8.0.7, when an interface implements SSL decryption with RSA enabled or hosts
5.9MEDIUM
CVE-2017-16878
< 8.0.7
Cross-site scripting (XSS) vulnerability in the Captive Portal function in Palo Alto Networks PAN-OS before 8.0.7 allows remote at
6.1MEDIUM
CVE-2017-15941
< 6.1.19
Cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS before 6.1.19, 7.0.x before 7.0.19, 7.1.x before 7.1.14, and
6.1MEDIUM
CVE-2017-15944
< 6.1.19
Palo Alto Networks PAN-OS before 6.1.19, 7.0.x before 7.0.19, 7.1.x before 7.1.14, and 8.0.x before 8.0.6 allows remote attackers
9.8CRITICAL
CVE-2017-15943
< 6.1.19
The configuration file import for applications, spyware and vulnerability objects functionality in the web interface in Palo Alto
5.3MEDIUM
CVE-2017-15942
< 6.1.19
Palo Alto Networks PAN-OS before 6.1.19, 7.0.x before 7.0.19, 7.1.x before 7.1.13, and 8.0.x before 8.0.6 allows remote attackers
7.5HIGH
CVE-2017-15940
< 6.1.19
The web interface packet capture management component in Palo Alto Networks PAN-OS before 6.1.19, 7.0.x before 7.0.19, 7.1.x befor
9.8CRITICAL
CVE-2016-8610
<= 6.1.17
A denial of service flaw was found in OpenSSL 0.9.8, 1.0.1, 1.0.2 through 1.0.2h, and 1.1.0 in the way the TLS/SSL protocol define
7.5HIGH
CVE-2017-9458
<= 6.1.17
XML external entity (XXE) vulnerability in the GlobalProtect internal and external gateway interface in Palo Alto Networks PAN-OS
9.8CRITICAL
CVE-2017-12416
<= 6.1.17
Cross-site scripting (XSS) vulnerability in the GlobalProtect internal and external gateway interface in Palo Alto Networks PAN-OS
6.1MEDIUM
CVE-2017-9467
<= 6.1.17
Cross-site scripting (XSS) vulnerability in the GlobalProtect external interface in Palo Alto Networks PAN-OS before 6.1.18, 7.x b
6.1MEDIUM
CVE-2017-9459
<= 6.1.17
Cross-site scripting (XSS) vulnerability in the management web interface in Palo Alto Networks PAN-OS before 6.1.18, 7.x before 7.
6.1MEDIUM
CVE-2017-8390
<= 6.1.17
The DNS Proxy in Palo Alto Networks PAN-OS before 6.1.18, 7.x before 7.0.16, 7.1.x before 7.1.11, and 8.x before 8.0.3 allows remo
9.8CRITICAL
CVE-2015-6531
<= 6.0
Palo Alto Networks Panorama VM Appliance with PAN-OS before 6.0.1 might allow remote attackers to execute arbitrary Python code vi
7.8HIGH
CVE-2017-7216
<= 7.1.8
The Management Web Interface in Palo Alto Networks PAN-OS before 7.1.9 allows remote authenticated users to obtain sensitive infor
6.5MEDIUM
CVE-2017-7945
<= 6.1.15
The GlobalProtect external interface in Palo Alto Networks PAN-OS before 6.1.17, 7.x before 7.0.15, 7.1.x before 7.1.9, and 8.x be
9.8CRITICAL
CVE-2017-7644
<= 6.1.15
The Management Web Interface in Palo Alto Networks PAN-OS before 6.1.17, 7.x before 7.0.15, and 7.1.x before 7.1.9 allows remote a
6.5MEDIUM
CVE-2017-7409
<= 7.0.14
Palo Alto Networks PAN-OS before 7.0.15 has XSS in the GlobalProtect external interface via crafted request parameters, aka PAN-SA
6.1MEDIUM
CVE-2017-7218
<= 7.1.8
The Management Web Interface in Palo Alto Networks PAN-OS before 7.1.9 allows remote authenticated users to gain privileges via un
7.8HIGH
CVE-2017-7217
<= 7.0.13
The Management Web Interface in Palo Alto Networks PAN-OS before 7.0.14 and 7.1.x before 7.1.9 allows remote attackers to write to
4.3MEDIUM
CVE-2017-5584
all versions
Cross-site scripting (XSS) vulnerability in the Management Web Interface in Palo Alto Networks PAN-OS 5.1, 6.x before 6.1.16, 7.0.
5.4MEDIUM
CVE-2017-5583
<= 6.1.15
The Management Web Interface in Palo Alto Networks PAN-OS before 6.1.16, 7.0.x before 7.0.13, and 7.1.x before 7.1.8 allows remote
6.5MEDIUM
CVE-2016-9151
>= 5.0.0 and < 5.0.20
Palo Alto Networks PAN-OS before 5.0.20, 5.1.x before 5.1.13, 6.0.x before 6.0.15, 6.1.x before 6.1.15, 7.0.x before 7.0.11, and 7
7.8HIGH
CVE-2016-9150
>= 5.0.0 and < 5.0.20
Buffer overflow in the management web interface in Palo Alto Networks PAN-OS before 5.0.20, 5.1.x before 5.1.13, 6.0.x before 6.0.
9.8CRITICAL
CVE-2016-9149
>= 5.0.0 and < 5.0.20
The Addresses Object parser in Palo Alto Networks PAN-OS before 5.0.20, 5.1.x before 5.1.13, 6.0.x before 6.0.15, 6.1.x before 6.1
6.5MEDIUM
CVE-2016-5195
>= 5.1 and < 7.0.14
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging in
7.0HIGH
CVE-2016-1712
>= 5.0.0 and < 5.0.19
Palo Alto Networks PAN-OS before 5.0.19, 5.1.x before 5.1.12, 6.0.x before 6.0.14, 6.1.x before 6.1.12, and 7.0.x before 7.0.8 mig
7.8HIGH
CVE-2016-2219
all versions
Cross-site scripting (XSS) vulnerability in the management interface in Palo Alto Networks PAN-OS 7.x before 7.0.8 allows remote a
5.4MEDIUM
CVE-2016-4971
>= 6.1.0 and <= 6.1.16
GNU wget before 1.18 allows remote servers to write to arbitrary files by redirecting a request from HTTP to a crafted FTP resourc
8.8HIGH
CVE-2016-3657
>= 5.0.0 and < 5.0.18
Buffer overflow in the GlobalProtect Portal in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10,
9.8CRITICAL
CVE-2016-3656
>= 5.0.0 and < 5.0.18
The GlobalProtect Portal in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.
7.5HIGH
CVE-2016-3655
>= 5.0.0 and < 5.0.18
The management web interface in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x befor
9.8CRITICAL
CVE-2016-3654
>= 5.0.0 and < 5.0.18
The device management command line interface (CLI) in Palo Alto Networks PAN-OS before 5.0.18, 5.1.x before 5.1.11, 6.0.x before 6
7.2HIGH
CVE-2015-4162
<= 5.0.15
XML external entity (XXE) vulnerability in the management interface in PAN-OS before 5.0.16, 6.x before 6.0.8, and 6.1.x before 6.
CVE-2014-3764
<= 5.0.14
Cross-site scripting (XSS) vulnerability in the web-based device management interface in Palo Alto Networks PAN-OS before 5.0.15,
CVE-2013-5664
all versions
Cross-site scripting (XSS) vulnerability in the web-based device-management API browser in Palo Alto Networks PAN-OS before 4.1.13
CVE-2013-5663
<= 4.0.8
The App-ID cache feature in Palo Alto Networks PAN-OS before 4.0.14, 4.1.x before 4.1.11, and 5.0.x before 5.0.2 allows remote att
CVE-2012-6605
<= 3.1.10
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.11 and 4.0.x before 4.0.9 allows remote authe
CVE-2012-6604
<= 3.1.10
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.11 and 4.0.x before 4.0.9 allows remote authe
CVE-2012-6603
<= 3.1.11
The web management UI in Palo Alto Networks PAN-OS before 3.1.12, 4.0.x before 4.0.10, and 4.1.x before 4.1.4 allows remote attack
CVE-2012-6602
<= 3.1.9
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.4 allows remote authe
CVE-2012-6601
<= 3.1.11
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.12, 4.0.x before 4.0.10, and 4.1.x before 4.1
CVE-2012-6600
all versions
The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.2 allows remote
CVE-2012-6599
all versions
The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 and 4.1.x before 4.1.1 allows remote
CVE-2012-6598
all versions
The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 allows remote authenticated users to
CVE-2012-6597
<= 3.1.10
Palo Alto Networks PAN-OS before 3.1.11 and 4.0.x before 4.0.9 allows remote authenticated users to cause a denial of service (man
CVE-2012-6596
all versions
Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.3 stores cleartext LDAP bind passwords in authd.log, which allow
CVE-2012-6595
all versions
The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.2 allows remote
CVE-2012-6594
<= 3.1.10
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.11, 4.0.x before 4.0.8, and 4.1.x before 4.1.
CVE-2012-6593
<= 3.1.9
Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.4 allows remote attackers to execute arbitrary commands via unspecifi
CVE-2012-6592
<= 3.1.9
Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.5 allows remote attackers to execute arbitrary commands via unspecifi
CVE-2012-6591
<= 3.1.9
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.5 allows remote authe
CVE-2012-6590
all versions
The web-based management UI in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 allows remote attackers to obtain verbose error inform
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin