1.7
CVE-2026-0301
- EPSS 0.31%
- Veröffentlicht 13.08.2026 02:05:25
- Zuletzt bearbeitet 18.08.2026 15:04:46
- CVE-Watchlists
- Unerledigt
PAN-OS: Information Disclosure Vulnerability in URL Filtering
An information disclosure vulnerability in the URL Filtering feature of Palo Alto Networks PAN-OS® software enables an unauthenticated user with network access to obtain sensitive information. Panorama is not impacted by this vulnerability.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerPalo Alto Networks
≫
Produkt
Cloud NGFW
Default Statusunknown
Version
All
Status
affected
HerstellerPalo Alto Networks
≫
Produkt
PAN-OS
Default Statusunaffected
Version
12.1.0
Status
unaffected
Version
11.2.0
Status
unaffected
Version
11.1.0
Version <
11.1.16-h1
Status
affected
Version
10.2.0
Version <
10.2.8
Status
affected
HerstellerPalo Alto Networks
≫
Produkt
Prisma Access
Default Statusunknown
Version
12.1.0
Status
unaffected
Version
11.2.0
Status
unaffected
Version
10.2.0
Version <
10.2.10
Status
affected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.31% | 0.239 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| psirt@paloaltonetworks.com | 1.7 | 0 | 0 |
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:U/V:D/RE:M/U:Amber
|
CWE-908 Use of Uninitialized Resource
The product uses or accesses a resource that has not been initialized.
https://security.paloaltonetworks.com/CVE-2026-0301