Paloaltonetworks

Pan-os

258 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.23%
  • Veröffentlicht 09.10.2025 18:13:22
  • Zuletzt bearbeitet 06.02.2026 17:13:34

An information disclosure vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to view session tokens of users authenticated to the firewall web UI. This may allow impersonation of users whose session tokens are...

  • EPSS 0.12%
  • Veröffentlicht 13.08.2025 17:03:21
  • Zuletzt bearbeitet 15.04.2026 00:35:42

A problem with the implementation of the MACsec protocol in Palo Alto Networks PAN-OS® results in the cleartext exposure of the connectivity association key (CAK). This issue is only applicable to PA-7500 Series devices which are in an NGFW cluster. ...

  • EPSS 0.43%
  • Veröffentlicht 13.06.2025 05:42:38
  • Zuletzt bearbeitet 15.04.2026 00:35:42

An information disclosure vulnerability in the SD-WAN feature of Palo Alto Networks PAN-OS® software enables an unauthorized user to view unencrypted data sent from the firewall through the SD-WAN interface. This requires the user to be able to inter...

  • EPSS 0.66%
  • Veröffentlicht 12.06.2025 23:30:15
  • Zuletzt bearbeitet 15.04.2026 00:35:42

A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user. To be able to exploit this issue, the user must have access to th...

  • EPSS 1.03%
  • Veröffentlicht 12.06.2025 23:27:31
  • Zuletzt bearbeitet 22.10.2025 12:57:48

A command injection vulnerability in Palo Alto Networks PAN-OS® enables an authenticated administrative user to perform actions as the root user. The attacker must have network access to the management web interface and successfully authenticate to ...

  • EPSS 0.15%
  • Veröffentlicht 14.05.2025 18:12:14
  • Zuletzt bearbeitet 15.04.2026 00:35:42

Using the AES-128-CCM algorithm for IPSec on certain Palo Alto Networks PAN-OS® firewalls (PA-7500, PA-5400, PA-5400f, PA-3400, PA-1600, PA-1400, and PA-400 Series) leads to unencrypted data transfer to devices that are connected to the PAN-OS firewa...

  • EPSS 0.4%
  • Veröffentlicht 14.05.2025 18:09:32
  • Zuletzt bearbeitet 15.04.2026 00:35:42

An improper input neutralization vulnerability in the management web interface of the Palo Alto Networks PAN-OS® software enables a malicious authenticated read-write administrator to impersonate another legitimate authenticated PAN-OS administrator....

  • EPSS 46.4%
  • Veröffentlicht 14.05.2025 18:07:36
  • Zuletzt bearbeitet 15.04.2026 00:35:42

A reflected cross-site scripting (XSS) vulnerability in the GlobalProtect™ gateway and portal features of Palo Alto Networks PAN-OS® software enables execution of malicious JavaScript in the context of an authenticated Captive Portal user's browser w...

Medienbericht
  • EPSS 0.42%
  • Veröffentlicht 14.05.2025 17:37:40
  • Zuletzt bearbeitet 29.05.2026 22:16:22

A missing exception check in Palo Alto Networks PAN-OS® software with the web proxy feature enabled allows an unauthenticated attacker to send a burst of maliciously crafted packets that causes the firewall to become unresponsive and eventually reboo...

  • EPSS 0.12%
  • Veröffentlicht 11.04.2025 17:43:05
  • Zuletzt bearbeitet 15.04.2026 00:35:42

A vulnerability in the Palo Alto Networks PAN-OS® software enables unlicensed administrators to view clear-text data captured using the packet capture feature https://docs.paloaltonetworks.com/pan-os/11-0/pan-os-admin/monitoring/take-packet-captures...