CVE-2017-7409
- EPSS 0.31%
- Published 21.04.2017 02:59:00
- Last modified 20.04.2025 01:37:25
Palo Alto Networks PAN-OS before 7.0.15 has XSS in the GlobalProtect external interface via crafted request parameters, aka PAN-SA-2017-0011 and PAN-70674.
CVE-2017-7217
- EPSS 0.2%
- Published 14.04.2017 14:59:00
- Last modified 20.04.2025 01:37:25
The Management Web Interface in Palo Alto Networks PAN-OS before 7.0.14 and 7.1.x before 7.1.9 allows remote attackers to write to export files via unspecified parameters.
CVE-2017-7218
- EPSS 0.18%
- Published 14.04.2017 14:59:00
- Last modified 20.04.2025 01:37:25
The Management Web Interface in Palo Alto Networks PAN-OS before 7.1.9 allows remote authenticated users to gain privileges via unspecified request parameters.
CVE-2017-5583
- EPSS 0.58%
- Published 15.03.2017 14:59:00
- Last modified 20.04.2025 01:37:25
The Management Web Interface in Palo Alto Networks PAN-OS before 6.1.16, 7.0.x before 7.0.13, and 7.1.x before 7.1.8 allows remote authenticated users to read arbitrary files via unspecified vectors.
CVE-2017-5584
- EPSS 0.2%
- Published 15.03.2017 14:59:00
- Last modified 20.04.2025 01:37:25
Cross-site scripting (XSS) vulnerability in the Management Web Interface in Palo Alto Networks PAN-OS 5.1, 6.x before 6.1.16, 7.0.x before 7.0.13, and 7.1.x before 7.1.8 allows remote authenticated users to inject arbitrary web script or HTML via uns...
CVE-2016-9151
- EPSS 0.43%
- Published 19.11.2016 06:59:03
- Last modified 12.04.2025 10:46:40
Palo Alto Networks PAN-OS before 5.0.20, 5.1.x before 5.1.13, 6.0.x before 6.0.15, 6.1.x before 6.1.15, 7.0.x before 7.0.11, and 7.1.x before 7.1.6 allows local users to gain privileges via crafted values of unspecified environment variables.
- EPSS 62.85%
- Published 19.11.2016 06:59:01
- Last modified 12.04.2025 10:46:40
Buffer overflow in the management web interface in Palo Alto Networks PAN-OS before 5.0.20, 5.1.x before 5.1.13, 6.0.x before 6.0.15, 6.1.x before 6.1.15, 7.0.x before 7.0.11, and 7.1.x before 7.1.6 allows remote attackers to execute arbitrary code v...
CVE-2016-9149
- EPSS 0.25%
- Published 19.11.2016 06:59:00
- Last modified 12.04.2025 10:46:40
The Addresses Object parser in Palo Alto Networks PAN-OS before 5.0.20, 5.1.x before 5.1.13, 6.0.x before 6.0.15, 6.1.x before 6.1.15, 7.0.x before 7.0.11, and 7.1.x before 7.1.6 mishandles single quote characters, which allows remote authenticated u...
CVE-2016-5195
- EPSS 94.25%
- Published 10.11.2016 21:59:00
- Last modified 12.04.2025 10:46:40
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect handling of a copy-on-write (COW) feature to write to a read-only memory mapping, as exploited in the wild in Oc...
CVE-2016-1712
- EPSS 0.05%
- Published 02.08.2016 16:59:00
- Last modified 12.04.2025 10:46:40
Palo Alto Networks PAN-OS before 5.0.19, 5.1.x before 5.1.12, 6.0.x before 6.0.14, 6.1.x before 6.1.12, and 7.0.x before 7.0.8 might allow local users to gain privileges by leveraging improper sanitization of the root_reboot local invocation.