Paloaltonetworks

Pan-os

242 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.78%
  • Veröffentlicht 13.04.2022 19:15:09
  • Zuletzt bearbeitet 21.11.2024 06:37:50

An improper handling of exceptional conditions vulnerability exists in the DNS proxy feature of Palo Alto Networks PAN-OS software that enables a meddler-in-the-middle (MITM) to send specifically crafted traffic to the firewall that causes the servic...

  • EPSS 0.03%
  • Veröffentlicht 09.03.2022 18:15:07
  • Zuletzt bearbeitet 21.11.2024 06:37:50

Usage of a weak cryptographic algorithm in Palo Alto Networks PAN-OS software where the password hashes of administrator and local user accounts are not created with a sufficient level of computational effort, which allows for password cracking attac...

  • EPSS 0.3%
  • Veröffentlicht 10.02.2022 18:15:08
  • Zuletzt bearbeitet 21.11.2024 06:37:48

PAN-OS software provides options to exclude specific websites from URL category enforcement and those websites are blocked or allowed (depending on your rules) regardless of their associated URL category. This is done by creating a custom URL categor...

  • EPSS 0.76%
  • Veröffentlicht 10.11.2021 17:15:10
  • Zuletzt bearbeitet 21.11.2024 06:20:52

An OS command injection vulnerability in the Palo Alto Networks PAN-OS management interface exists when performing dynamic updates. This vulnerability enables a man-in-the-middle attacker to execute arbitrary OS commands to escalate privileges. This ...

  • EPSS 38.41%
  • Veröffentlicht 10.11.2021 17:15:10
  • Zuletzt bearbeitet 21.11.2024 06:20:52

An OS command injection vulnerability in the Simple Certificate Enrollment Protocol (SCEP) feature of PAN-OS software allows an unauthenticated network-based attacker with specific knowledge of the firewall configuration to execute arbitrary code wit...

  • EPSS 0.44%
  • Veröffentlicht 10.11.2021 17:15:10
  • Zuletzt bearbeitet 21.11.2024 06:20:52

An OS command injection vulnerability in the Palo Alto Networks PAN-OS command line interface (CLI) enables an authenticated administrator with access to the CLI to execute arbitrary OS commands to escalate privileges. This issue impacts: PAN-OS 8.1 ...

  • EPSS 0.36%
  • Veröffentlicht 10.11.2021 17:15:10
  • Zuletzt bearbeitet 21.11.2024 06:20:52

An improper access control vulnerability in PAN-OS software enables an attacker with authenticated access to GlobalProtect portals and gateways to connect to the EC2 instance metadata endpoint for VM-Series firewalls hosted on Amazon AWS. Exploitatio...

  • EPSS 0.43%
  • Veröffentlicht 10.11.2021 17:15:10
  • Zuletzt bearbeitet 21.11.2024 06:20:53

An improper handling of exceptional conditions vulnerability exists in Palo Alto Networks GlobalProtect portal and gateway interfaces that enables an unauthenticated network-based attacker to send specifically crafted traffic to a GlobalProtect inter...

  • EPSS 53.11%
  • Veröffentlicht 10.11.2021 17:15:10
  • Zuletzt bearbeitet 21.11.2024 06:20:53

A memory corruption vulnerability exists in Palo Alto Networks GlobalProtect portal and gateway interfaces that enables an unauthenticated network-based attacker to disrupt system processes and potentially execute arbitrary code with root privileges....

  • EPSS 0.75%
  • Veröffentlicht 10.11.2021 17:15:09
  • Zuletzt bearbeitet 21.11.2024 06:20:51

A memory corruption vulnerability in Palo Alto Networks PAN-OS GlobalProtect Clientless VPN enables an authenticated attacker to execute arbitrary code with root user privileges during SAML authentication. This issue impacts: PAN-OS 8.1 versions earl...