CVE-2016-2219
- EPSS 0.16%
- Veröffentlicht 12.07.2016 19:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in the management interface in Palo Alto Networks PAN-OS 7.x before 7.0.8 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
CVE-2016-4971
- EPSS 79.09%
- Veröffentlicht 30.06.2016 17:59:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
GNU wget before 1.18 allows remote servers to write to arbitrary files by redirecting a request from HTTP to a crafted FTP resource.
CVE-2016-3656
- EPSS 0.62%
- Veröffentlicht 12.04.2016 17:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
The GlobalProtect Portal in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5H2 allows remote attackers to cause a denial of service (service crash) via a crafted request.
- EPSS 3.03%
- Veröffentlicht 12.04.2016 17:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Buffer overflow in the GlobalProtect Portal in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5 allows remote attackers to cause a denial of service (device crash) or possibly execute arbitrary...
- EPSS 1.31%
- Veröffentlicht 12.04.2016 17:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
The management web interface in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5 allows remote attackers to execute arbitrary OS commands via an unspecified API call.
- EPSS 0.52%
- Veröffentlicht 12.04.2016 17:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
The device management command line interface (CLI) in Palo Alto Networks PAN-OS before 5.0.18, 5.1.x before 5.1.11, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5H2 allows remote authenticated administrators to execute arbitrary OS ...
- EPSS 0.32%
- Veröffentlicht 02.06.2015 14:59:21
- Zuletzt bearbeitet 12.04.2025 10:46:40
XML external entity (XXE) vulnerability in the management interface in PAN-OS before 5.0.16, 6.x before 6.0.8, and 6.1.x before 6.1.4 allows remote authenticated administrators to obtain sensitive information via crafted XML data.
CVE-2014-3764
- EPSS 0.25%
- Veröffentlicht 06.01.2015 15:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in the web-based device management interface in Palo Alto Networks PAN-OS before 5.0.15, 5.1.x before 5.1.10, and 6.0.x before 6.0.6 allows remote attackers to inject arbitrary web script or HTML via unspecifi...
CVE-2012-6590
- EPSS 0.2%
- Veröffentlicht 31.08.2013 17:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
The web-based management UI in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 allows remote attackers to obtain verbose error information via crafted input, aka Ref ID 33139.
- EPSS 0.85%
- Veröffentlicht 31.08.2013 17:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.5 allows remote authenticated administrators to execute arbitrary commands via unspecified vectors, aka Ref ID 31116.