CVE-2020-1978
- EPSS 0.09%
- Veröffentlicht 08.04.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 05:11:46
TechSupport files generated on Palo Alto Networks VM Series firewalls for Microsoft Azure platform configured with high availability (HA) inadvertently collect Azure dashboard service account credentials. These credentials are equivalent to the crede...
CVE-2020-1979
- EPSS 0.24%
- Veröffentlicht 11.03.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 05:11:46
A format string vulnerability in the PAN-OS log daemon (logd) on Panorama allows a network based attacker with knowledge of registered firewall devices and access to Panorama management interfaces to execute arbitrary code, bypassing the restricted s...
CVE-2020-1980
- EPSS 0.27%
- Veröffentlicht 11.03.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 05:11:46
A shell command injection vulnerability in the PAN-OS CLI allows a local authenticated user to escape the restricted shell and escalate privileges. This issue affects only PAN-OS 8.1 versions earlier than PAN-OS 8.1.13. This issue does not affect PAN...
CVE-2020-1981
- EPSS 0.04%
- Veröffentlicht 11.03.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 05:11:46
A predictable temporary filename vulnerability in PAN-OS allows local privilege escalation. This issue allows a local attacker who bypassed the restricted shell to execute commands as a low privileged user and gain root access on the PAN-OS hardware ...
CVE-2020-1975
- EPSS 0.38%
- Veröffentlicht 12.02.2020 23:15:11
- Zuletzt bearbeitet 21.11.2024 05:11:46
Missing XML validation vulnerability in the PAN-OS web interface on Palo Alto Networks PAN-OS software allows authenticated users to inject arbitrary XML that results in privilege escalation. This issue affects PAN-OS 8.1 versions earlier than PAN-OS...
- EPSS 0.45%
- Veröffentlicht 20.12.2019 16:15:11
- Zuletzt bearbeitet 21.11.2024 04:32:19
Improper restriction of communications to Log Forwarding Card (LFC) on PA-7000 Series devices with second-generation Switch Management Card (SMC) may allow an attacker with network access to the LFC to gain root access to PAN-OS. This issue affects P...
CVE-2019-17437
- EPSS 0.13%
- Veröffentlicht 05.12.2019 15:15:11
- Zuletzt bearbeitet 21.11.2024 04:32:19
An improper authentication check in Palo Alto Networks PAN-OS may allow an authenticated low privileged non-superuser custom role user to elevate privileges and become superuser. This issue affects PAN-OS 7.1 versions prior to 7.1.25; 8.0 versions pr...
- EPSS 2.2%
- Veröffentlicht 23.08.2019 18:15:11
- Zuletzt bearbeitet 21.11.2024 04:36:51
Memory corruption in PAN-OS 7.1.24 and earlier, PAN-OS 8.0.19 and earlier, PAN-OS 8.1.9 and earlier, and PAN-OS 9.0.3 and earlier will allow a remote, unauthenticated user to craft a message to Secure Shell Daemon (SSHD) and corrupt arbitrary memory.
CVE-2019-1581
- EPSS 4.07%
- Veröffentlicht 23.08.2019 18:15:11
- Zuletzt bearbeitet 21.11.2024 04:36:51
A remote code execution vulnerability in the PAN-OS SSH device management interface that can lead to unauthenticated remote users with network access to the SSH management interface gaining root access to PAN-OS. This issue affects PAN-OS 7.1 version...
CVE-2019-1582
- EPSS 0.54%
- Veröffentlicht 23.08.2019 18:15:11
- Zuletzt bearbeitet 21.11.2024 04:36:51
Memory corruption in PAN-OS 8.1.9 and earlier, and PAN-OS 9.0.3 and earlier will allow an administrative user to cause arbitrary memory corruption by rekeying the current client interactive session.