CVE-2020-2031
- EPSS 0.32%
- Veröffentlicht 08.07.2020 17:15:09
- Zuletzt bearbeitet 21.11.2024 05:24:30
An integer underflow vulnerability in the dnsproxyd component of the PAN-OS management interface allows authenticated administrators to issue a command from the command line interface that causes the component to stop responding. Repeated attempts to...
- EPSS 16.87%
- Veröffentlicht 29.06.2020 15:15:12
- Zuletzt bearbeitet 04.11.2025 16:49:30
When Security Assertion Markup Language (SAML) authentication is enabled and the 'Validate Identity Provider Certificate' option is disabled (unchecked), improper verification of signatures in PAN-OS SAML authentication enables an unauthenticated net...
- EPSS 2.4%
- Veröffentlicht 10.06.2020 18:15:11
- Zuletzt bearbeitet 21.11.2024 05:24:29
A buffer overflow vulnerability in the authd component of the PAN-OS management server allows authenticated administrators to disrupt system processes and potentially execute arbitrary code with root privileges. This issue affects: All versions of PA...
- EPSS 0.52%
- Veröffentlicht 10.06.2020 18:15:11
- Zuletzt bearbeitet 21.11.2024 05:24:29
An OS Command Injection vulnerability in PAN-OS management server allows authenticated administrators to execute arbitrary OS commands with root privileges when uploading a new certificate in FIPS-CC mode. This issue affects: All versions of PAN-OS 7...
- EPSS 1.11%
- Veröffentlicht 10.06.2020 18:15:11
- Zuletzt bearbeitet 21.11.2024 05:24:29
An OS Command Injection vulnerability in the PAN-OS web management interface allows authenticated administrators to execute arbitrary OS commands with root privileges by sending a malicious request to generate new certificates for use in the PAN-OS c...
CVE-2020-2013
- EPSS 0.34%
- Veröffentlicht 13.05.2020 19:15:14
- Zuletzt bearbeitet 21.11.2024 05:24:27
A cleartext transmission of sensitive information vulnerability in Palo Alto Networks PAN-OS Panorama that discloses an authenticated PAN-OS administrator's PAN-OS session cookie. When an administrator issues a context switch request into a managed f...
- EPSS 4.82%
- Veröffentlicht 13.05.2020 19:15:14
- Zuletzt bearbeitet 21.11.2024 05:24:27
An OS Command Injection vulnerability in PAN-OS management server allows authenticated users to inject and execute arbitrary shell commands with root privileges. This issue affects: All versions of PAN-OS 7.1 and 8.0; PAN-OS 8.1 versions earlier than...
- EPSS 1.74%
- Veröffentlicht 13.05.2020 19:15:14
- Zuletzt bearbeitet 21.11.2024 05:24:27
A buffer overflow vulnerability in the PAN-OS management server allows authenticated users to crash system processes or potentially execute arbitrary code with root privileges. This issue affects: PAN-OS 7.1 versions earlier than 7.1.26; PAN-OS 8.1 v...
CVE-2020-2016
- EPSS 0.21%
- Veröffentlicht 13.05.2020 19:15:14
- Zuletzt bearbeitet 21.11.2024 05:24:27
A race condition due to insecure creation of a file in a temporary directory vulnerability in PAN-OS allows for root privilege escalation from a limited linux user account. This allows an attacker who has escaped the restricted shell as a low privile...
CVE-2020-2017
- EPSS 0.49%
- Veröffentlicht 13.05.2020 19:15:14
- Zuletzt bearbeitet 21.11.2024 05:24:27
A DOM-Based Cross Site Scripting Vulnerability exists in PAN-OS and Panorama Management Web Interfaces. A remote attacker able to convince an authenticated administrator to click on a crafted link to PAN-OS and Panorama Web Interfaces could execute a...