CVE-2026-0258
- EPSS 0.33%
- Veröffentlicht 13.05.2026 18:08:36
- Zuletzt bearbeitet 14.07.2026 15:52:15
A server-side request forgery (SSRF) vulnerability in the IKEv2 implementation of Palo Alto Networks PAN-OS® software allows an unauthenticated attacker to cause the firewall to send network requests to unintended destinations or cause a denial of se...
CVE-2026-0259
- EPSS 0.34%
- Veröffentlicht 13.05.2026 18:05:45
- Zuletzt bearbeitet 14.07.2026 15:52:52
An arbitrary File Read and Delete Vulnerability in Palo Alto Networks WildFire® WF-500 and WF-500-B appliances enables users to read sensitive information and delete arbitrary files. This vulnerability affects WF-500 and WF-500-B appliances running i...
CVE-2026-0261
- EPSS 1.4%
- Veröffentlicht 13.05.2026 17:59:31
- Zuletzt bearbeitet 14.07.2026 16:39:45
Multiple command injection vulnerabilities in Palo Alto Networks PAN-OS® software enable an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user. To be able to exploit this issue, the user must have acce...
CVE-2026-0262
- EPSS 0.36%
- Veröffentlicht 13.05.2026 17:49:43
- Zuletzt bearbeitet 14.07.2026 16:39:38
Multiple denial of service vulnerabilities in Palo Alto Networks PAN-OS® software allow an unauthenticated attacker with network access to cause a denial of service (DoS) condition by sending specially crafted network traffic. Panorama and Cloud NG...
CVE-2026-0263
- EPSS 0.37%
- Veröffentlicht 13.05.2026 17:47:05
- Zuletzt bearbeitet 14.07.2026 14:49:23
A buffer overflow vulnerability in the IKEv2 processing of Palo Alto Networks PAN-OS® software allows an unauthenticated network-based attacker to execute arbitrary code with elevated privileges on the firewall, or cause a denial of service (DoS) con...
CVE-2026-0264
- EPSS 0.47%
- Veröffentlicht 13.05.2026 17:40:36
- Zuletzt bearbeitet 14.07.2026 15:49:35
A buffer overflow vulnerability in the DNS proxy and DNS Server features of Palo Alto Networks PAN-OS® Software allows an unauthenticated attacker with network access to cause a denial of service (DoS) condition (all PAN-OS platforms except Cloud NGF...
CVE-2026-0265
- EPSS 0.38%
- Veröffentlicht 13.05.2026 17:38:33
- Zuletzt bearbeitet 14.07.2026 15:50:50
An authentication bypass vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to bypass authentication controls when Cloud Authentication Service (CAS) is enabled. The risk is higher if CAS i...
CVE-2026-0300
- EPSS 32.07%
- Veröffentlicht 06.05.2026 18:57:39
- Zuletzt bearbeitet 12.05.2026 18:47:21
A buffer overflow vulnerability in the User-ID™ Authentication Portal (aka Captive Portal) service of Palo Alto Networks PAN-OS software allows an unauthenticated attacker to execute arbitrary code with root privileges on the PA-Series and VM-Series ...
CVE-2026-0228
- EPSS 0.19%
- Veröffentlicht 11.02.2026 18:16:07
- Zuletzt bearbeitet 15.04.2026 00:35:42
An improper certificate validation vulnerability in PAN-OS allows users to connect Terminal Server Agents on Windows to PAN-OS using expired certificates even if the PAN-OS configuration would not normally permit them to do so.
CVE-2026-0229
- EPSS 0.56%
- Veröffentlicht 11.02.2026 18:16:07
- Zuletzt bearbeitet 15.04.2026 00:35:42
A denial-of-service (DoS) vulnerability in the Advanced DNS Security (ADNS) feature of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker to initiate system reboots using a maliciously crafted packet. Repeated attempts to initiat...