threat
engine
.sh
Back
·
··:··
Home
/
Product
/
paloaltonetworks pan os
Product
paloaltonetworks pan os
211 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2026-0300
all versions
A buffer overflow vulnerability in the User-ID™ Authentication Portal (aka Captive Portal) service of Palo Alto Networks PAN-OS
9.8
CRITICAL
CVE-2026-0227
>= 10.1.0 and < 10.1.14
A vulnerability in Palo Alto Networks PAN-OS software enables an unauthenticated attacker to cause a denial of service (DoS) to th
7.5
HIGH
CVE-2025-4615
>= 10.2.0 and < 10.2.17
An improper input neutralization vulnerability in the management web interface of the Palo Alto Networks PAN-OS® software enables
7.2
HIGH
CVE-2025-4614
>= 10.2.0 and < 10.2.17
An information disclosure vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to view ses
2.7
LOW
CVE-2025-4231
>= 10.2.0 and < 10.2.8
A command injection vulnerability in Palo Alto Networks PAN-OS® enables an authenticated administrative user to perform actions a
7.2
HIGH
CVE-2025-0130
>= 11.1.0 and < 11.1.6
A missing exception check in Palo Alto Networks PAN-OS® software with the web proxy feature enabled allows an unauthenticated att
7.5
HIGH
CVE-2025-0124
>= 10.1.0 and < 10.1.14
An authenticated file deletion vulnerability in the Palo Alto Networks PAN-OS® software enables an authenticated attacker with ne
3.8
LOW
CVE-2025-0114
>= 10.1.0 and < 10.1.14
A Denial of Service (DoS) vulnerability in the GlobalProtect feature of Palo Alto Networks PAN-OS software enables an unauthentica
7.5
HIGH
CVE-2025-0111
>= 10.1.0 and < 10.1.14
An authenticated file read vulnerability in the Palo Alto Networks PAN-OS software enables an authenticated attacker with network
6.5
MEDIUM
CVE-2025-0108
>= 10.1.0 and < 10.1.14
An authentication bypass in the Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the
9.1
CRITICAL
CVE-2024-3393
>= 11.1.0 and <= 11.1.1
A Denial of Service vulnerability in the DNS Security feature of Palo Alto Networks PAN-OS software allows an unauthenticated atta
7.5
HIGH
CVE-2024-9474
>= 10.1.0 and < 10.1.14
A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS administrator with access to the manage
7.2
HIGH
CVE-2024-0012
all versions
An authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the mana
9.8
CRITICAL
CVE-2024-5920
>= 10.1.0 and < 10.1.14
A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS software enables an authenticated read-write Panorama admi
4.8
MEDIUM
CVE-2024-5919
>= 10.1.0 and < 10.1.10
A blind XML External Entities (XXE) injection vulnerability in the Palo Alto Networks PAN-OS software enables an authenticated att
6.5
MEDIUM
CVE-2024-5918
>= 10.1.0 and < 10.1.11
An improper certificate validation vulnerability in Palo Alto Networks PAN-OS software enables an authorized user with a specially
4.3
MEDIUM
CVE-2024-5917
>= 10.1.0 and < 10.1.7
A server-side request forgery in PAN-OS software enables an authenticated attacker with administrative privileges to use the admin
4.9
MEDIUM
CVE-2024-2552
>= 10.2.0 and < 10.2.7
A command injection vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to bypass system re
6.0
MEDIUM
CVE-2024-2551
>= 10.1.0 and < 10.1.14
A null pointer dereference vulnerability in Palo Alto Networks PAN-OS software enables an unauthenticated attacker to stop a core
7.5
HIGH
CVE-2024-2550
>= 10.2.0 and < 10.2.7
A null pointer dereference vulnerability in the GlobalProtect gateway in Palo Alto Networks PAN-OS software enables an unauthentic
7.5
HIGH
CVE-2024-9471
>= 9.0.0 and < 10.0.0
A privilege escalation (PE) vulnerability in the XML API of Palo Alto Networks PAN-OS software enables an authenticated PAN-OS adm
4.7
MEDIUM
CVE-2024-9468
>= 10.2.0 and < 10.2.4
A memory corruption vulnerability in Palo Alto Networks PAN-OS software allows an unauthenticated attacker to crash PAN-OS due to
7.5
HIGH
CVE-2024-8691
>= 9.1.0 and < 9.1.17
A vulnerability in the GlobalProtect portal in Palo Alto Networks PAN-OS software enables a malicious authenticated GlobalProtect
7.1
HIGH
CVE-2024-8688
>= 9.1.0 and < 9.1.15
An improper neutralization of matching symbols vulnerability in the Palo Alto Networks PAN-OS command line interface (CLI) enables
4.4
MEDIUM
CVE-2024-8687
>= 8.1.0 and < 8.1.25
An information exposure vulnerability exists in Palo Alto Networks PAN-OS software that enables a GlobalProtect end user to learn
7.1
HIGH
CVE-2024-8686
>= 11.2.0 and <= 11.2.2
A command injection vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to bypass system re
7.2
HIGH
CVE-2024-5916
>= 10.2.0 and < 10.2.8
An information exposure vulnerability in Palo Alto Networks PAN-OS software enables a local system administrator to unintentionall
4.4
MEDIUM
CVE-2024-5913
>= 10.1.0 and < 10.1.14
An improper input validation vulnerability in Palo Alto Networks PAN-OS software enables an attacker with the ability to tamper wi
6.1
MEDIUM
CVE-2024-5911
>= 10.1.0 and < 10.1.9
An arbitrary file upload vulnerability in Palo Alto Networks Panorama software enables an authenticated read-write administrator w
4.9
MEDIUM
CVE-2024-3400
all versions
A command injection as a result of arbitrary file creation vulnerability in the GlobalProtect feature of Palo Alto Networks PAN-OS
10.0
CRITICAL
CVE-2024-3388
>= 8.1.0 and < 8.1.26
A vulnerability in the GlobalProtect Gateway in Palo Alto Networks PAN-OS software enables an authenticated attacker to impersonat
4.1
MEDIUM
CVE-2024-3387
>= 10.1.0 and < 10.1.12
A weak (low bit strength) device certificate in Palo Alto Networks Panorama software enables an attacker to perform a meddler-in-t
5.3
MEDIUM
CVE-2024-3386
>= 9.0.0 and < 9.0.16
An incorrect string comparison vulnerability in Palo Alto Networks PAN-OS software prevents Predefined Decryption Exclusions from
5.3
MEDIUM
CVE-2024-3385
>= 9.0.0 and <= 9.0.16
A packet processing mechanism in Palo Alto Networks PAN-OS software enables a remote attacker to reboot hardware-based firewalls.
7.5
HIGH
CVE-2024-3384
>= 8.1.0 and < 8.1.24
A vulnerability in Palo Alto Networks PAN-OS software enables a remote attacker to reboot PAN-OS firewalls when receiving Windows
7.5
HIGH
CVE-2024-3383
>= 10.1.0 and < 10.1.11
A vulnerability in how Palo Alto Networks PAN-OS software processes data received from Cloud Identity Engine (CIE) agents enables
7.4
HIGH
CVE-2024-3382
>= 10.2.0 and < 10.2.7
A memory leak exists in Palo Alto Networks PAN-OS software that enables an attacker to send a burst of crafted packets through the
7.5
HIGH
CVE-2024-2433
< 9.0.17
An improper authorization vulnerability in Palo Alto Networks Panorama software enables an authenticated read-only administrator t
4.3
MEDIUM
CVE-2024-0011
>= 8.1.0 and < 8.1.24
A reflected cross-site scripting (XSS) vulnerability in the Captive Portal feature of Palo Alto Networks PAN-OS software enables e
4.3
MEDIUM
CVE-2024-0010
>= 10.1.0 and < 10.1.11
A reflected cross-site scripting (XSS) vulnerability in the GlobalProtect portal feature of Palo Alto Networks PAN-OS software ena
4.3
MEDIUM
CVE-2024-0009
>= 10.2.0 and < 10.2.4
An improper verification vulnerability in the GlobalProtect gateway feature of Palo Alto Networks PAN-OS software enables a malici
6.3
MEDIUM
CVE-2024-0008
>= 10.2.0 and < 10.2.5
Web sessions in the management interface in Palo Alto Networks PAN-OS software do not expire in certain situations, making it susc
6.6
MEDIUM
CVE-2024-0007
>= 8.1.0 and < 8.1.24
A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS software enables a malicious authenticated read-write admi
6.8
MEDIUM
CVE-2023-6795
>= 8.1.0 and < 8.1.24
An OS command injection vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to disrupt syst
5.5
MEDIUM
CVE-2023-6794
>= 8.1.0 and < 8.1.26
An arbitrary file upload vulnerability in Palo Alto Networks PAN-OS software enables an authenticated read-write administrator wit
5.5
MEDIUM
CVE-2023-6793
>= 9.1.0 and < 9.1.17
An improper privilege management vulnerability in Palo Alto Networks PAN-OS software enables an authenticated read-only administra
2.7
LOW
CVE-2023-6792
>= 8.1.0 and < 8.1.24
An OS command injection vulnerability in the XML API of Palo Alto Networks PAN-OS software enables an authenticated API user to di
5.5
MEDIUM
CVE-2023-6791
>= 8.1.0 and < 8.1.24
A credential disclosure vulnerability in Palo Alto Networks PAN-OS software enables an authenticated read-only administrator to ob
4.9
MEDIUM
CVE-2023-6790
>= 8.1.0 and < 8.1.25
A DOM-Based cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS software enables a remote attacker to execute a
8.8
HIGH
CVE-2023-6789
>= 8.1.0 and < 8.1.26
A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS software enables a malicious authenticated read-write admi
4.3
MEDIUM
CVE-2023-38046
>= 10.2.0 and < 10.2.4
A vulnerability exists in Palo Alto Networks PAN-OS software that enables an authenticated administrator with the privilege to com
5.5
MEDIUM
CVE-2023-0010
>= 8.1.0 and <= 8.1.24
A reflected cross-site scripting (XSS) vulnerability in the Captive Portal feature of Palo Alto Networks PAN-OS software can allow
5.4
MEDIUM
CVE-2023-0008
>= 8.1.0 and < 8.1.25
A file disclosure vulnerability in Palo Alto Networks PAN-OS software enables an authenticated read-write administrator with acces
4.4
MEDIUM
CVE-2023-0007
>= 8.1.0 and < 8.1.25
A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS software on Panorama appliances enables an authenticated r
6.5
MEDIUM
CVE-2023-0005
>= 8.1.0 and < 8.1.24
A vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to expose the plaintext values of sec
4.1
MEDIUM
CVE-2023-0004
>= 8.1.0 and < 8.1.24
A local file deletion vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to delete files f
6.5
MEDIUM
CVE-2022-0030
>= 8.1.0 and < 8.1.24
An authentication bypass vulnerability in the Palo Alto Networks PAN-OS 8.1 web interface allows a network-based attacker with spe
8.1
HIGH
CVE-2022-0028
>= 8.1.0 and < 8.1.23
A PAN-OS URL filtering policy misconfiguration could allow a network-based attacker to conduct reflected and amplified TCP denial-
8.6
HIGH
CVE-2022-0024
>= 8.1.0 and < 8.1.23
A vulnerability exists in Palo Alto Networks PAN-OS software that enables an authenticated network-based PAN-OS administrator to u
7.2
HIGH
CVE-2022-0023
>= 8.1.0 and < 8.1.22
An improper handling of exceptional conditions vulnerability exists in the DNS proxy feature of Palo Alto Networks PAN-OS software
5.9
MEDIUM
CVE-2022-0022
>= 8.1.0 and < 8.1.21
Usage of a weak cryptographic algorithm in Palo Alto Networks PAN-OS software where the password hashes of administrator and local
4.1
MEDIUM
CVE-2022-0011
>= 8.1.0 and < 8.1.21
PAN-OS software provides options to exclude specific websites from URL category enforcement and those websites are blocked or allo
6.5
MEDIUM
CVE-2021-3064
>= 8.1.0 and < 8.1.17
A memory corruption vulnerability exists in Palo Alto Networks GlobalProtect portal and gateway interfaces that enables an unauthe
9.8
CRITICAL
CVE-2021-3063
>= 8.1.0 and < 8.1.21
An improper handling of exceptional conditions vulnerability exists in Palo Alto Networks GlobalProtect portal and gateway interfa
7.5
HIGH
CVE-2021-3062
>= 8.1.0 and < 8.1.20
An improper access control vulnerability in PAN-OS software enables an attacker with authenticated access to GlobalProtect portals
8.1
HIGH
CVE-2021-3061
>= 8.1.0 and <= 8.1.20
An OS command injection vulnerability in the Palo Alto Networks PAN-OS command line interface (CLI) enables an authenticated admin
6.4
MEDIUM
CVE-2021-3060
>= 8.1.0 and <= 8.1.20
An OS command injection vulnerability in the Simple Certificate Enrollment Protocol (SCEP) feature of PAN-OS software allows an un
8.1
HIGH
CVE-2021-3059
>= 8.1.0 and <= 8.1.20
An OS command injection vulnerability in the Palo Alto Networks PAN-OS management interface exists when performing dynamic updates
8.1
HIGH
CVE-2021-3058
>= 8.1.0 and <= 8.1.20
An OS command injection vulnerability in the Palo Alto Networks PAN-OS web interface enables an authenticated administrator with p
8.8
HIGH
CVE-2021-3056
>= 8.1.0 and < 8.1.20
A memory corruption vulnerability in Palo Alto Networks PAN-OS GlobalProtect Clientless VPN enables an authenticated attacker to e
8.8
HIGH
CVE-2021-3055
>= 8.1.0 and < 8.1.20
An improper restriction of XML external entity (XXE) reference vulnerability in the Palo Alto Networks PAN-OS web interface enable
6.5
MEDIUM
CVE-2021-3054
>= 8.1.0 and < 8.1.20
A time-of-check to time-of-use (TOCTOU) race condition vulnerability in the Palo Alto Networks PAN-OS web interface enables an aut
7.2
HIGH
CVE-2021-3053
>= 8.1.0 and < 8.1.20
An improper handling of exceptional conditions vulnerability exists in the Palo Alto Networks PAN-OS dataplane that enables an una
7.5
HIGH
CVE-2021-3052
>= 8.1.0 and < 8.1.20
A reflected cross-site scripting (XSS) vulnerability in the Palo Alto Network PAN-OS web interface enables an authenticated networ
8.0
HIGH
CVE-2021-3050
>= 9.0.0 and < 9.0.15
An OS command injection vulnerability in the Palo Alto Networks PAN-OS web interface enables an authenticated administrator to exe
8.8
HIGH
CVE-2021-3048
>= 9.0.0 and < 9.0.14
Certain invalid URL entries contained in an External Dynamic List (EDL) cause the Device Server daemon (devsrvr) to stop respondin
5.9
MEDIUM
CVE-2021-3047
>= 8.1.0 and < 8.1.19
A cryptographically weak pseudo-random number generator (PRNG) is used during authentication to the Palo Alto Networks PAN-OS web
4.2
MEDIUM
CVE-2021-3046
>= 8.1.0 and < 8.1.19
An improper authentication vulnerability exists in Palo Alto Networks PAN-OS software that enables a SAML authenticated attacker t
6.8
MEDIUM
CVE-2021-3045
>= 8.1.0 and < 8.1.19
An OS command argument injection vulnerability in the Palo Alto Networks PAN-OS web interface enables an authenticated administrat
4.9
MEDIUM
CVE-2021-3037
>= 8.1.0 and < 8.1.19
An information exposure through log file vulnerability exists in Palo Alto Networks PAN-OS software where the connection details f
2.3
LOW
CVE-2021-3036
>= 8.1.0 and < 8.1.19
An information exposure through log file vulnerability exists in Palo Alto Networks PAN-OS software where secrets in PAN-OS XML AP
4.4
MEDIUM
CVE-2021-3032
>= 8.1.0 and < 8.1.18
An information exposure through log file vulnerability exists in Palo Alto Networks PAN-OS software where configuration secrets fo
4.4
MEDIUM
CVE-2021-3031
>= 8.1.0 and < 8.1.18
Padding bytes in Ethernet packets on PA-200, PA-220, PA-500, PA-800, PA-2000 Series, PA-3000 Series, PA-3200 Series, PA-5200 Serie
4.3
MEDIUM
CVE-2020-2050
>= 8.1.0 and < 8.1.17
An authentication bypass vulnerability exists in the GlobalProtect SSL VPN component of Palo Alto Networks PAN-OS software that al
8.2
HIGH
CVE-2020-2048
>= 8.1.0 and < 8.1.17
An information exposure through log file vulnerability exists where the password for the configured system proxy server for a PAN-
3.3
LOW
CVE-2020-2022
>= 8.1.0 and < 8.1.17
An information exposure vulnerability exists in Palo Alto Networks Panorama software that discloses the token for the Panorama web
7.5
HIGH
CVE-2020-2000
>= 8.1.0 and < 8.1.16
An OS command injection and memory corruption vulnerability in the PAN-OS management web interface that allows authenticated admin
7.2
HIGH
CVE-2020-1999
>= 7.1.0 and <= 7.1.26
A vulnerability exists in the Palo Alto Network PAN-OS signature-based threat detection engine that allows an attacker to communic
5.3
MEDIUM
CVE-2020-2044
>= 8.0.0 and <= 8.0.20
An information exposure through log file vulnerability where an administrator's password or other sensitive information may be log
3.3
LOW
CVE-2020-2043
>= 8.1.0 and <= 8.1.15
An information exposure through log file vulnerability where sensitive fields are recorded in the configuration log without maskin
3.3
LOW
CVE-2020-2042
>= 10.0.0 and < 10.0.1
A buffer overflow vulnerability in the PAN-OS management web interface allows authenticated administrators to disrupt system proce
7.2
HIGH
CVE-2020-2041
>= 8.0.0 and <= 8.0.20
An insecure configuration of the appweb daemon of Palo Alto Networks PAN-OS 8.1 allows a remote unauthenticated user to send a spe
7.5
HIGH
CVE-2020-2040
>= 8.0.0 and <= 8.0.20
A buffer overflow vulnerability in PAN-OS allows an unauthenticated attacker to disrupt system processes and potentially execute a
9.8
CRITICAL
CVE-2020-2039
>= 8.1.0 and < 8.1.16
An uncontrolled resource consumption vulnerability in Palo Alto Networks PAN-OS allows for a remote unauthenticated user to upload
5.3
MEDIUM
CVE-2020-2038
>= 9.0.0 and < 9.0.10
An OS Command Injection vulnerability in the PAN-OS management interface that allows authenticated administrators to execute arbit
7.2
HIGH
CVE-2020-2037
>= 8.1.0 and < 8.1.16
An OS Command Injection vulnerability in the PAN-OS management interface that allows authenticated administrators to execute arbit
7.2
HIGH
CVE-2020-2036
>= 8.1.0 and < 8.1.16
A reflected cross-site scripting (XSS) vulnerability exists in the PAN-OS management web interface. A remote attacker able to conv
8.8
HIGH
CVE-2020-2035
all versions
When SSL/TLS Forward Proxy Decryption mode has been configured to decrypt the web transactions, the PAN-OS URL filtering feature i
3.0
LOW
CVE-2020-2034
>= 7.1.0 and <= 7.1.26
An OS Command Injection vulnerability in the PAN-OS GlobalProtect portal allows an unauthenticated network based attacker to execu
8.1
HIGH
CVE-2020-2031
>= 9.1.0 and < 9.1.3
An integer underflow vulnerability in the dnsproxyd component of the PAN-OS management interface allows authenticated administrato
4.9
MEDIUM
CVE-2020-2030
>= 7.1.0 and <= 7.1.26
An OS Command Injection vulnerability in the PAN-OS management interface that allows authenticated administrators to execute arbit
7.2
HIGH
CVE-2020-1982
>= 8.0.0 and <= 8.0.20
Certain communication between PAN-OS and cloud-delivered services inadvertently use TLS 1.0, which is known to be a cryptographica
4.8
MEDIUM
CVE-2020-2021
>= 8.0.0 and <= 8.0.20
When Security Assertion Markup Language (SAML) authentication is enabled and the 'Validate Identity Provider Certificate' option i
10.0
CRITICAL
CVE-2020-2029
>= 7.1.0 and < 7.1.26
An OS Command Injection vulnerability in the PAN-OS web management interface allows authenticated administrators to execute arbitr
7.2
HIGH
CVE-2020-2028
>= 7.1.0 and <= 7.1.26
An OS Command Injection vulnerability in PAN-OS management server allows authenticated administrators to execute arbitrary OS comm
7.2
HIGH
CVE-2020-2027
>= 7.1.0 and <= 7.1.26
A buffer overflow vulnerability in the authd component of the PAN-OS management server allows authenticated administrators to disr
7.2
HIGH
CVE-2020-2018
>= 7.1.0 and < 7.1.26
An authentication bypass vulnerability in the Panorama context switching feature allows an attacker with network access to a Panor
9.0
CRITICAL
CVE-2020-2017
>= 7.1.0 and < 7.1.26
A DOM-Based Cross Site Scripting Vulnerability exists in PAN-OS and Panorama Management Web Interfaces. A remote attacker able to
8.8
HIGH
CVE-2020-2016
>= 7.1.0 and < 7.1.26
A race condition due to insecure creation of a file in a temporary directory vulnerability in PAN-OS allows for root privilege esc
7.0
HIGH
CVE-2020-2015
>= 7.1.0 and < 7.1.26
A buffer overflow vulnerability in the PAN-OS management server allows authenticated users to crash system processes or potentiall
8.8
HIGH
CVE-2020-2014
>= 7.1.0 and <= 7.1.26
An OS Command Injection vulnerability in PAN-OS management server allows authenticated users to inject and execute arbitrary shell
8.8
HIGH
CVE-2020-2013
>= 7.1.0 and <= 7.1.26
A cleartext transmission of sensitive information vulnerability in Palo Alto Networks PAN-OS Panorama that discloses an authentica
8.3
HIGH
CVE-2020-2012
>= 7.1.0 and <= 7.1.26
Improper restriction of XML external entity reference ('XXE') vulnerability in Palo Alto Networks Panorama management service allo
7.5
HIGH
CVE-2020-2011
>= 7.1.0 and <= 7.1.26
An improper input validation vulnerability in the configuration daemon of Palo Alto Networks PAN-OS Panorama allows for a remote u
7.5
HIGH
CVE-2020-2010
>= 7.1.0 and <= 7.1.26
An OS command injection vulnerability in PAN-OS management interface allows an authenticated administrator to execute arbitrary OS
7.2
HIGH
CVE-2020-2009
>= 7.1.0 and <= 7.1.26
An external control of filename vulnerability in the SD WAN component of Palo Alto Networks PAN-OS Panorama allows an authenticate
7.2
HIGH
CVE-2020-2008
>= 7.1.0 and <= 7.1.26
An OS command injection and external control of filename vulnerability in Palo Alto Networks PAN-OS allows authenticated administr
7.2
HIGH
CVE-2020-2007
>= 7.1.0 and <= 7.1.26
An OS command injection vulnerability in the management server component of PAN-OS allows an authenticated user to potentially exe
7.2
HIGH
CVE-2020-2006
>= 7.1.0 and <= 7.1.26
A stack-based buffer overflow vulnerability in the management server component of PAN-OS that allows an authenticated user to pote
7.2
HIGH
CVE-2020-2005
>= 7.1.0 and < 7.1.26
A cross-site scripting (XSS) vulnerability exists when visiting malicious websites with the Palo Alto Networks GlobalProtect Clien
7.1
HIGH
CVE-2020-2003
>= 7.1.0 and <= 7.1.26
An external control of filename vulnerability in the command processing of PAN-OS allows an authenticated administrator to delete
6.5
MEDIUM
CVE-2020-2002
>= 7.1.0 and < 7.1.26
An authentication bypass by spoofing vulnerability exists in the authentication daemon and User-ID components of Palo Alto Network
8.1
HIGH
CVE-2020-2001
>= 7.1.0 and <= 7.1.26
An external control of path and data vulnerability in the Palo Alto Networks PAN-OS Panorama XSLT processing logic that allows an
8.1
HIGH
CVE-2020-1998
>= 7.1.0 and < 7.1.26
An improper authorization vulnerability in PAN-OS that mistakenly uses the permissions of local linux users instead of the intende
5.4
MEDIUM
CVE-2020-1997
>= 7.1.0 and < 7.1.26
An open redirection vulnerability in the GlobalProtect component of Palo Alto Networks PAN-OS allows an attacker to specify an arb
5.3
MEDIUM
CVE-2020-1996
>= 7.1.0 and <= 7.1.26
A missing authorization vulnerability in the management server component of PAN-OS Panorama allows a remote unauthenticated user t
5.3
MEDIUM
CVE-2020-1995
>= 9.1.0 and < 9.1.2
A NULL pointer dereference vulnerability in Palo Alto Networks PAN-OS allows an authenticated administrator to send a request that
4.9
MEDIUM
CVE-2020-1994
>= 7.1.0 and <= 7.1.26
A predictable temporary file vulnerability in PAN-OS allows a local authenticated user with shell access to corrupt arbitrary syst
4.1
MEDIUM
CVE-2020-1993
>= 7.1.0 and <= 7.1.26
The GlobalProtect Portal feature in PAN-OS does not set a new session identifier after a successful user login, which allows sessi
3.7
LOW
CVE-2020-1992
>= 9.0.0 and < 9.0.7
A format string vulnerability in the Varrcvr daemon of PAN-OS on PA-7000 Series devices with a Log Forwarding Card (LFC) allows re
8.1
HIGH
CVE-2020-1990
>= 8.1.0 and < 8.1.13
A stack-based buffer overflow vulnerability in the management server component of PAN-OS allows an authenticated user to upload a
7.2
HIGH
CVE-2020-1978
all versions
TechSupport files generated on Palo Alto Networks VM Series firewalls for Microsoft Azure platform configured with high availabili
5.8
MEDIUM
CVE-2020-1981
>= 8.1.0 and < 8.1.13
A predictable temporary filename vulnerability in PAN-OS allows local privilege escalation. This issue allows a local attacker who
7.0
HIGH
CVE-2020-1980
>= 8.1.0 and < 8.1.13
A shell command injection vulnerability in the PAN-OS CLI allows a local authenticated user to escape the restricted shell and esc
7.8
HIGH
CVE-2020-1979
< 8.1.13
A format string vulnerability in the PAN-OS log daemon (logd) on Panorama allows a network based attacker with knowledge of regist
8.1
HIGH
CVE-2020-1975
>= 8.1.0 and < 8.1.12
Missing XML validation vulnerability in the PAN-OS web interface on Palo Alto Networks PAN-OS software allows authenticated users
6.8
MEDIUM
CVE-2019-17440
>= 9.0 and <= 9.0.5
Improper restriction of communications to Log Forwarding Card (LFC) on PA-7000 Series devices with second-generation Switch Manage
10.0
CRITICAL
CVE-2019-17437
>= 7.1.0 and < 7.1.25
An improper authentication check in Palo Alto Networks PAN-OS may allow an authenticated low privileged non-superuser custom role
7.8
HIGH
CVE-2019-1582
>= 8.1.0 and <= 8.1.9
Memory corruption in PAN-OS 8.1.9 and earlier, and PAN-OS 9.0.3 and earlier will allow an administrative user to cause arbitrary m
7.2
HIGH
CVE-2019-1581
<= 7.1.24
A remote code execution vulnerability in the PAN-OS SSH device management interface that can lead to unauthenticated remote users
9.8
CRITICAL
CVE-2019-1580
<= 7.1.24
Memory corruption in PAN-OS 7.1.24 and earlier, PAN-OS 8.0.19 and earlier, PAN-OS 8.1.9 and earlier, and PAN-OS 9.0.3 and earlier
9.8
CRITICAL
CVE-2019-1579
< 7.1.19
Remote Code Execution in PAN-OS 7.1.18 and earlier, PAN-OS 8.0.11-h1 and earlier, and PAN-OS 8.1.2 and earlier with GlobalProtect
8.1
HIGH
CVE-2019-1576
>= 9.0.0 and <= 9.0.2
Command injection in PAN-0S 9.0.2 and earlier may allow an authenticated attacker to gain access to a remote shell in PAN-OS, and
8.8
HIGH
CVE-2019-1575
< 7.1.24
Information disclosure in PAN-OS 7.1.23 and earlier, PAN-OS 8.0.18 and earlier, PAN-OS 8.1.8-h4 and earlier, and PAN-OS 9.0.2 and
8.8
HIGH
CVE-2019-1572
all versions
PAN-OS 9.0.0 may allow an unauthenticated remote user to access php files.
7.5
HIGH
CVE-2019-1559
>= 7.1.0 and < 7.1.15
If an application encounters a fatal protocol error and then calls SSL_shutdown() twice (once to send a close_notify, and once to
5.9
MEDIUM
CVE-2019-1566
>= 7.1.0 and < 7.1.22
The PAN-OS management web interface in PAN-OS 7.1.21 and earlier, PAN-OS 8.0.14 and earlier, and PAN-OS 8.1.5 and earlier, may all
6.1
MEDIUM
CVE-2019-1565
<= 7.1.21
The PAN-OS external dynamics lists in PAN-OS 7.1.21 and earlier, PAN-OS 8.0.14 and earlier, and PAN-OS 8.1.5 and earlier, may allo
5.4
MEDIUM
CVE-2018-10141
< 6.1.0
GlobalProtect Portal Login page in Palo Alto Networks PAN-OS before 8.1.4 allows an unauthenticated attacker to inject arbitrary J
6.1
MEDIUM
CVE-2018-18065
<= 7.1.22
_set_key in agent/helpers/table_container.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by an authent
6.5
MEDIUM
CVE-2018-14634
>= 7.1.0 and < 7.1.23
An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileged local user with access to S
7.8
HIGH
CVE-2018-10140
>= 8.1.0 and <= 8.1.2
The PAN-OS Management Web Interface in Palo Alto Networks PAN-OS 8.1.2 and earlier may allow an authenticated user to shut down al
4.3
MEDIUM
CVE-2018-10139
<= 6.1.21
The PAN-OS response for GlobalProtect Gateway in Palo Alto Networks PAN-OS 6.1.21 and earlier, PAN-OS 7.1.18 and earlier, PAN-OS 8
6.1
MEDIUM
CVE-2018-9337
> 6.0.0 and <= 6.1.20
The PAN-OS web interface administration page in PAN-OS 6.1.20 and earlier, PAN-OS 7.1.17 and earlier, PAN-OS 8.0.10 and earlier, a
5.4
MEDIUM
CVE-2018-9335
> 6.0.0 and <= 6.1.20
The PAN-OS session browser in PAN-OS 6.1.20 and earlier, PAN-OS 7.1.16 and earlier, PAN-OS 8.0.9 and earlier, and PAN-OS 8.1.1 and
5.4
MEDIUM
CVE-2018-9334
> 6.0.0 and <= 6.1.20
The PAN-OS management web interface page in PAN-OS 6.1.20 and earlier, PAN-OS 7.1.16 and earlier, PAN-OS 8.0.8 and earlier, and PA
5.5
MEDIUM
CVE-2018-9242
> 6.0.0 and <= 6.1.20
The PAN-OS management web interface page in PAN-OS 6.1.20 and earlier, PAN-OS 7.1.16 and earlier, PAN-OS 8.0.9 and earlier may all
5.5
MEDIUM
CVE-2018-7636
all versions
The URL filtering "continue page" hosted by PAN-OS 8.0.10 and earlier may allow an attacker to inject arbitrary JavaScript or HTML
6.1
MEDIUM
CVE-2017-17841
all versions
Palo Alto Networks PAN-OS 6.1, 7.1, and 8.0.x before 8.0.7, when an interface implements SSL decryption with RSA enabled or hosts
5.9
MEDIUM
CVE-2017-16878
< 8.0.7
Cross-site scripting (XSS) vulnerability in the Captive Portal function in Palo Alto Networks PAN-OS before 8.0.7 allows remote at
6.1
MEDIUM
CVE-2017-15941
< 6.1.19
Cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS before 6.1.19, 7.0.x before 7.0.19, 7.1.x before 7.1.14, and
6.1
MEDIUM
CVE-2017-15944
< 6.1.19
Palo Alto Networks PAN-OS before 6.1.19, 7.0.x before 7.0.19, 7.1.x before 7.1.14, and 8.0.x before 8.0.6 allows remote attackers
9.8
CRITICAL
CVE-2017-15943
< 6.1.19
The configuration file import for applications, spyware and vulnerability objects functionality in the web interface in Palo Alto
5.3
MEDIUM
CVE-2017-15942
< 6.1.19
Palo Alto Networks PAN-OS before 6.1.19, 7.0.x before 7.0.19, 7.1.x before 7.1.13, and 8.0.x before 8.0.6 allows remote attackers
7.5
HIGH
CVE-2017-15940
< 6.1.19
The web interface packet capture management component in Palo Alto Networks PAN-OS before 6.1.19, 7.0.x before 7.0.19, 7.1.x befor
9.8
CRITICAL
CVE-2016-8610
<= 6.1.17
A denial of service flaw was found in OpenSSL 0.9.8, 1.0.1, 1.0.2 through 1.0.2h, and 1.1.0 in the way the TLS/SSL protocol define
7.5
HIGH
CVE-2017-9458
<= 6.1.17
XML external entity (XXE) vulnerability in the GlobalProtect internal and external gateway interface in Palo Alto Networks PAN-OS
9.8
CRITICAL
CVE-2017-12416
<= 6.1.17
Cross-site scripting (XSS) vulnerability in the GlobalProtect internal and external gateway interface in Palo Alto Networks PAN-OS
6.1
MEDIUM
CVE-2017-9467
<= 6.1.17
Cross-site scripting (XSS) vulnerability in the GlobalProtect external interface in Palo Alto Networks PAN-OS before 6.1.18, 7.x b
6.1
MEDIUM
CVE-2017-9459
<= 6.1.17
Cross-site scripting (XSS) vulnerability in the management web interface in Palo Alto Networks PAN-OS before 6.1.18, 7.x before 7.
6.1
MEDIUM
CVE-2017-8390
<= 6.1.17
The DNS Proxy in Palo Alto Networks PAN-OS before 6.1.18, 7.x before 7.0.16, 7.1.x before 7.1.11, and 8.x before 8.0.3 allows remo
9.8
CRITICAL
CVE-2015-6531
<= 6.0
Palo Alto Networks Panorama VM Appliance with PAN-OS before 6.0.1 might allow remote attackers to execute arbitrary Python code vi
7.8
HIGH
CVE-2017-7216
<= 7.1.8
The Management Web Interface in Palo Alto Networks PAN-OS before 7.1.9 allows remote authenticated users to obtain sensitive infor
6.5
MEDIUM
CVE-2017-7945
<= 6.1.15
The GlobalProtect external interface in Palo Alto Networks PAN-OS before 6.1.17, 7.x before 7.0.15, 7.1.x before 7.1.9, and 8.x be
9.8
CRITICAL
CVE-2017-7644
<= 6.1.15
The Management Web Interface in Palo Alto Networks PAN-OS before 6.1.17, 7.x before 7.0.15, and 7.1.x before 7.1.9 allows remote a
6.5
MEDIUM
CVE-2017-7409
<= 7.0.14
Palo Alto Networks PAN-OS before 7.0.15 has XSS in the GlobalProtect external interface via crafted request parameters, aka PAN-SA
6.1
MEDIUM
CVE-2017-7218
<= 7.1.8
The Management Web Interface in Palo Alto Networks PAN-OS before 7.1.9 allows remote authenticated users to gain privileges via un
7.8
HIGH
CVE-2017-7217
<= 7.0.13
The Management Web Interface in Palo Alto Networks PAN-OS before 7.0.14 and 7.1.x before 7.1.9 allows remote attackers to write to
4.3
MEDIUM
CVE-2017-5584
all versions
Cross-site scripting (XSS) vulnerability in the Management Web Interface in Palo Alto Networks PAN-OS 5.1, 6.x before 6.1.16, 7.0.
5.4
MEDIUM
CVE-2017-5583
<= 6.1.15
The Management Web Interface in Palo Alto Networks PAN-OS before 6.1.16, 7.0.x before 7.0.13, and 7.1.x before 7.1.8 allows remote
6.5
MEDIUM
CVE-2016-9151
>= 5.0.0 and < 5.0.20
Palo Alto Networks PAN-OS before 5.0.20, 5.1.x before 5.1.13, 6.0.x before 6.0.15, 6.1.x before 6.1.15, 7.0.x before 7.0.11, and 7
7.8
HIGH
CVE-2016-9150
>= 5.0.0 and < 5.0.20
Buffer overflow in the management web interface in Palo Alto Networks PAN-OS before 5.0.20, 5.1.x before 5.1.13, 6.0.x before 6.0.
9.8
CRITICAL
CVE-2016-9149
>= 5.0.0 and < 5.0.20
The Addresses Object parser in Palo Alto Networks PAN-OS before 5.0.20, 5.1.x before 5.1.13, 6.0.x before 6.0.15, 6.1.x before 6.1
6.5
MEDIUM
CVE-2016-5195
>= 5.1 and < 7.0.14
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging in
7.0
HIGH
CVE-2016-1712
>= 5.0.0 and < 5.0.19
Palo Alto Networks PAN-OS before 5.0.19, 5.1.x before 5.1.12, 6.0.x before 6.0.14, 6.1.x before 6.1.12, and 7.0.x before 7.0.8 mig
7.8
HIGH
CVE-2016-2219
all versions
Cross-site scripting (XSS) vulnerability in the management interface in Palo Alto Networks PAN-OS 7.x before 7.0.8 allows remote a
5.4
MEDIUM
CVE-2016-4971
>= 6.1.0 and <= 6.1.16
GNU wget before 1.18 allows remote servers to write to arbitrary files by redirecting a request from HTTP to a crafted FTP resourc
8.8
HIGH
CVE-2016-3657
>= 5.0.0 and < 5.0.18
Buffer overflow in the GlobalProtect Portal in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10,
9.8
CRITICAL
CVE-2016-3656
>= 5.0.0 and < 5.0.18
The GlobalProtect Portal in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.
7.5
HIGH
CVE-2016-3655
>= 5.0.0 and < 5.0.18
The management web interface in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x befor
9.8
CRITICAL
CVE-2016-3654
>= 5.0.0 and < 5.0.18
The device management command line interface (CLI) in Palo Alto Networks PAN-OS before 5.0.18, 5.1.x before 5.1.11, 6.0.x before 6
7.2
HIGH
CVE-2015-4162
<= 5.0.15
XML external entity (XXE) vulnerability in the management interface in PAN-OS before 5.0.16, 6.x before 6.0.8, and 6.1.x before 6.
CVE-2014-3764
<= 5.0.14
Cross-site scripting (XSS) vulnerability in the web-based device management interface in Palo Alto Networks PAN-OS before 5.0.15,
CVE-2013-5664
all versions
Cross-site scripting (XSS) vulnerability in the web-based device-management API browser in Palo Alto Networks PAN-OS before 4.1.13
CVE-2013-5663
<= 4.0.8
The App-ID cache feature in Palo Alto Networks PAN-OS before 4.0.14, 4.1.x before 4.1.11, and 5.0.x before 5.0.2 allows remote att
CVE-2012-6605
<= 3.1.10
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.11 and 4.0.x before 4.0.9 allows remote authe
CVE-2012-6604
<= 3.1.10
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.11 and 4.0.x before 4.0.9 allows remote authe
CVE-2012-6603
<= 3.1.11
The web management UI in Palo Alto Networks PAN-OS before 3.1.12, 4.0.x before 4.0.10, and 4.1.x before 4.1.4 allows remote attack
CVE-2012-6602
<= 3.1.9
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.4 allows remote authe
CVE-2012-6601
<= 3.1.11
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.12, 4.0.x before 4.0.10, and 4.1.x before 4.1
CVE-2012-6600
all versions
The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.2 allows remote
CVE-2012-6599
all versions
The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 and 4.1.x before 4.1.1 allows remote
CVE-2012-6598
all versions
The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 allows remote authenticated users to
CVE-2012-6597
<= 3.1.10
Palo Alto Networks PAN-OS before 3.1.11 and 4.0.x before 4.0.9 allows remote authenticated users to cause a denial of service (man
CVE-2012-6596
all versions
Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.3 stores cleartext LDAP bind passwords in authd.log, which allow
CVE-2012-6595
all versions
The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.2 allows remote
CVE-2012-6594
<= 3.1.10
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.11, 4.0.x before 4.0.8, and 4.1.x before 4.1.
CVE-2012-6593
<= 3.1.9
Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.4 allows remote attackers to execute arbitrary commands via unspecifi
CVE-2012-6592
<= 3.1.9
Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.5 allows remote attackers to execute arbitrary commands via unspecifi
CVE-2012-6591
<= 3.1.9
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.5 allows remote authe
CVE-2012-6590
all versions
The web-based management UI in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 allows remote attackers to obtain verbose error inform
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin