CVE-2017-7409
- EPSS 0.31%
- Veröffentlicht 21.04.2017 02:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Palo Alto Networks PAN-OS before 7.0.15 has XSS in the GlobalProtect external interface via crafted request parameters, aka PAN-SA-2017-0011 and PAN-70674.
CVE-2017-7217
- EPSS 0.2%
- Veröffentlicht 14.04.2017 14:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The Management Web Interface in Palo Alto Networks PAN-OS before 7.0.14 and 7.1.x before 7.1.9 allows remote attackers to write to export files via unspecified parameters.
CVE-2017-7218
- EPSS 0.18%
- Veröffentlicht 14.04.2017 14:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The Management Web Interface in Palo Alto Networks PAN-OS before 7.1.9 allows remote authenticated users to gain privileges via unspecified request parameters.
CVE-2017-5583
- EPSS 0.58%
- Veröffentlicht 15.03.2017 14:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The Management Web Interface in Palo Alto Networks PAN-OS before 6.1.16, 7.0.x before 7.0.13, and 7.1.x before 7.1.8 allows remote authenticated users to read arbitrary files via unspecified vectors.
CVE-2017-5584
- EPSS 0.2%
- Veröffentlicht 15.03.2017 14:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Cross-site scripting (XSS) vulnerability in the Management Web Interface in Palo Alto Networks PAN-OS 5.1, 6.x before 6.1.16, 7.0.x before 7.0.13, and 7.1.x before 7.1.8 allows remote authenticated users to inject arbitrary web script or HTML via uns...
CVE-2016-9151
- EPSS 0.43%
- Veröffentlicht 19.11.2016 06:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
Palo Alto Networks PAN-OS before 5.0.20, 5.1.x before 5.1.13, 6.0.x before 6.0.15, 6.1.x before 6.1.15, 7.0.x before 7.0.11, and 7.1.x before 7.1.6 allows local users to gain privileges via crafted values of unspecified environment variables.
- EPSS 62.85%
- Veröffentlicht 19.11.2016 06:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
Buffer overflow in the management web interface in Palo Alto Networks PAN-OS before 5.0.20, 5.1.x before 5.1.13, 6.0.x before 6.0.15, 6.1.x before 6.1.15, 7.0.x before 7.0.11, and 7.1.x before 7.1.6 allows remote attackers to execute arbitrary code v...
CVE-2016-9149
- EPSS 0.25%
- Veröffentlicht 19.11.2016 06:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Addresses Object parser in Palo Alto Networks PAN-OS before 5.0.20, 5.1.x before 5.1.13, 6.0.x before 6.0.15, 6.1.x before 6.1.15, 7.0.x before 7.0.11, and 7.1.x before 7.1.6 mishandles single quote characters, which allows remote authenticated u...
CVE-2016-5195
- EPSS 94.25%
- Veröffentlicht 10.11.2016 21:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect handling of a copy-on-write (COW) feature to write to a read-only memory mapping, as exploited in the wild in Oc...
CVE-2016-1712
- EPSS 0.05%
- Veröffentlicht 02.08.2016 16:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
Palo Alto Networks PAN-OS before 5.0.19, 5.1.x before 5.1.12, 6.0.x before 6.0.14, 6.1.x before 6.1.12, and 7.0.x before 7.0.8 might allow local users to gain privileges by leveraging improper sanitization of the root_reboot local invocation.