Skip to content
Noroxi

paloaltonetworks records

383 published records for vendor paloaltonetworks.

All records

383 records
  • PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect

    CriticalCVSS 10.0KEVWeaponizedEPSS 100%

    paloaltonetworks · pan-osApr 12, 2024

  • Expedition: Unauthenticated OS Command Injection Vulnerability Leads to Firewall Credential Disclosure

    CriticalCVSS 9.9KEVWeaponizedEPSS 99%

    paloaltonetworks · expeditionOct 9, 2024

  • Palo Alto Networks PAN-OS before 6.1.19, 7.0.x before 7.0.19, 7.1.x before 7.1.14, and 8.0.x before 8.0.6 allows remote attackers to execute

    CriticalCVSS 9.8KEVWeaponizedEPSS 98%

    paloaltonetworks · pan-osDec 11, 2017

  • PAN-OS: Authentication Bypass in the Management Web Interface (PAN-SA-2024-0015)

    CriticalCVSS 9.3KEVWeaponizedEPSS 100%

    paloaltonetworks · pan-osNov 18, 2024

  • Expedition: SQL Injection Leads to Firewall Admin Credential Disclosure

    CriticalCVSS 9.2KEVWeaponizedEPSS 100%

    paloaltonetworks · expeditionOct 9, 2024

  • PAN-OS: Authentication Bypass in the Management Web Interface

    HighCVSS 8.8KEVWeaponizedEPSS 98%

    paloaltonetworks · pan-osFeb 12, 2025

  • Expedition: Missing Authentication Leads to Admin Account Takeover

    CriticalCVSS 9.3KEVWeaponizedEPSS 92%

    paloaltonetworks · expeditionJul 10, 2024

  • PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities

    HighCVSS 7.8KEVWeaponizedEPSS 96%

    paloaltonetworks · pan-osMay 13, 2026

  • PAN-OS: Privilege Escalation (PE) Vulnerability in the Web Management Interface

    MediumCVSS 6.9KEVWeaponizedEPSS 95%

    paloaltonetworks · pan-osNov 18, 2024

  • Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect ha

    HighCVSS 7.0KEVWeaponizedEPSS 84%

    linux · linux kernelNov 10, 2016

  • CVE-2026-0300
    77This week

    PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portal

    CriticalCVSS 9.3KEVWeaponizedEPSS 32%

    paloaltonetworks · pan-osMay 6, 2026

  • CVE-2019-1579
    76This week

    Remote Code Execution in PAN-OS 7.1.18 and earlier, PAN-OS 8.0.11-h1 and earlier, and PAN-OS 8.1.2 and earlier with GlobalProtect Portal or

    HighCVSS 8.1KEVWeaponizedEPSS 46%

    paloaltonetworks · pan-osJul 19, 2019

  • CVE-2024-3393
    73This week

    PAN-OS: Firewall Denial of Service (DoS) in DNS Security Using a Specially Crafted Packet

    HighCVSS 8.7KEVWeaponizedEPSS 28%

    paloaltonetworks · pan-osDec 27, 2024

  • CVE-2020-2021
    71This week

    PAN-OS: Authentication Bypass in SAML Authentication

    CriticalCVSS 10.0KEVWeaponizedEPSS 4%

    paloaltonetworks · pan-osJun 29, 2020

  • CVE-2018-14634
    65This week

    An integer overflow flaw was found in the Linux kernel's create_elf_tables() function.

    HighCVSS 7.8KEVWeaponizedEPSS 15%

    linux · linux kernelSep 25, 2018

  • CVE-2022-0028
    65This week

    PAN-OS: Reflected Amplification Denial-of-Service (DoS) Vulnerability in URL Filtering

    HighCVSS 8.6KEVWeaponizedEPSS 2%

    paloaltonetworks · pan-osAug 10, 2022

  • CVE-2024-9464
    62This week

    Expedition: Authenticated OS Command Injection Vulnerability Leads to Firewall Admin Credential Disclosure

    CriticalCVSS 9.3Proof of conceptEPSS 83%

    paloaltonetworks · expeditionOct 9, 2024

  • PAN-OS: Authenticated File Read Vulnerability in the Management Web Interface

    HighCVSS 7.1KEVWeaponizedEPSS 2%

    paloaltonetworks · pan-osFeb 12, 2025

  • PAN-OS: OS command injection vulnerability in the management web interface

    HighCVSS 7.2WeaponizedEPSS 86%

    paloaltonetworks · pan-osSep 9, 2020

  • Expedition: OS Command Injection Vulnerability

    HighCVSS 7.7Proof of conceptEPSS 79%

    paloaltonetworks · expeditionJan 10, 2025

  • GNU wget before 1.18 allows remote servers to write to arbitrary files by redirecting a request from HTTP to a crafted FTP resource.

    HighCVSS 8.8Proof of conceptEPSS 46%

    gnu · wgetJun 30, 2016

  • Buffer overflow in the management web interface in Palo Alto Networks PAN-OS before 5.0.20, 5.1.x before 5.1.13, 6.0.x before 6.0.15, 6.1.x

    CriticalCVSS 9.8Proof of conceptEPSS 35%

    paloaltonetworks · pan-osNov 19, 2016

  • The Palo Alto Networks Expedition Migration tool 1.0.107 and earlier may allow an unauthenticated attacker with remote access to run system

    CriticalCVSS 9.8No exploitEPSS 25%

    paloaltonetworks · expeditionDec 11, 2018

  • PAN-OS: Memory Corruption Vulnerability in GlobalProtect Portal and Gateway Interfaces

    CriticalCVSS 9.8Proof of conceptEPSS 20%

    paloaltonetworks · pan-osNov 10, 2021

  • A denial of service flaw was found in OpenSSL 0.9.8, 1.0.1, 1.0.2 through 1.0.2h, and 1.1.0 in the way the TLS/SSL protocol defined processi

    HighCVSS 7.5Proof of conceptEPSS 40%

    openssl · opensslNov 13, 2017