CVE-2020-2017
- EPSS 0.49%
- Veröffentlicht 13.05.2020 19:15:14
- Zuletzt bearbeitet 21.11.2024 05:24:27
A DOM-Based Cross Site Scripting Vulnerability exists in PAN-OS and Panorama Management Web Interfaces. A remote attacker able to convince an authenticated administrator to click on a crafted link to PAN-OS and Panorama Web Interfaces could execute a...
CVE-2020-2018
- EPSS 0.32%
- Veröffentlicht 13.05.2020 19:15:14
- Zuletzt bearbeitet 21.11.2024 05:24:27
An authentication bypass vulnerability in the Panorama context switching feature allows an attacker with network access to a Panorama's management interface to gain privileged access to managed firewalls. An attacker requires some knowledge of manage...
CVE-2020-2003
- EPSS 0.33%
- Veröffentlicht 13.05.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 05:24:25
An external control of filename vulnerability in the command processing of PAN-OS allows an authenticated administrator to delete arbitrary system files affecting the integrity of the system or causing denial of service to all PAN-OS services. This i...
CVE-2020-2005
- EPSS 0.5%
- Veröffentlicht 13.05.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 05:24:25
A cross-site scripting (XSS) vulnerability exists when visiting malicious websites with the Palo Alto Networks GlobalProtect Clientless VPN that can compromise the user's active session. This issue affects: PAN-OS 7.1 versions earlier than 7.1.26; PA...
- EPSS 1.53%
- Veröffentlicht 13.05.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 05:24:25
A stack-based buffer overflow vulnerability in the management server component of PAN-OS that allows an authenticated user to potentially execute arbitrary code with root privileges. This issue affects: All versions of PAN-OS 7.1 and 8.0; PAN-OS 8.1 ...
- EPSS 3.67%
- Veröffentlicht 13.05.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 05:24:25
An OS command injection vulnerability in the management server component of PAN-OS allows an authenticated user to potentially execute arbitrary commands with root privileges. This issue affects: All PAN-OS 7.1 versions; PAN-OS 8.1 versions earlier t...
- EPSS 2.99%
- Veröffentlicht 13.05.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 05:24:26
An OS command injection and external control of filename vulnerability in Palo Alto Networks PAN-OS allows authenticated administrators to execute code with root privileges or delete arbitrary system files and impact the system's integrity or cause a...
- EPSS 1.52%
- Veröffentlicht 13.05.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 05:24:26
An external control of filename vulnerability in the SD WAN component of Palo Alto Networks PAN-OS Panorama allows an authenticated administrator to send a request that results in the creation and write of an arbitrary file on all firewalls managed b...
- EPSS 3.24%
- Veröffentlicht 13.05.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 05:24:26
An OS command injection vulnerability in PAN-OS management interface allows an authenticated administrator to execute arbitrary OS commands with root privileges. This issue affects: All versions of PAN-OS 7.1 and 8.0; PAN-OS 8.1 versions earlier than...
CVE-2020-2011
- EPSS 0.58%
- Veröffentlicht 13.05.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 05:24:26
An improper input validation vulnerability in the configuration daemon of Palo Alto Networks PAN-OS Panorama allows for a remote unauthenticated user to send a specifically crafted registration request to the device that causes the configuration serv...