Paloaltonetworks

Prisma Access

29 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.05%
  • Veröffentlicht 11.04.2025 02:15:18
  • Zuletzt bearbeitet 11.04.2025 15:39:52

An improper input neutralization vulnerability in the management web interface of the Palo Alto Networks PAN-OS® software enables a malicious authenticated read-write administrator to impersonate another legitimate authenticated PAN-OS administrator....

  • EPSS 0.06%
  • Veröffentlicht 12.03.2025 18:34:38
  • Zuletzt bearbeitet 18.03.2025 00:15:12

A Denial of Service (DoS) vulnerability in Palo Alto Networks PAN-OS software causes the firewall to unexpectedly reboot when processing a specially crafted LLDP frame sent by an unauthenticated adjacent attacker. Repeated attempts to initiate this c...

  • EPSS 0.73%
  • Veröffentlicht 12.02.2025 21:15:16
  • Zuletzt bearbeitet 12.02.2025 21:15:16

An unauthenticated file deletion vulnerability in the Palo Alto Networks PAN-OS management web interface enables an unauthenticated attacker with network access to the management web interface to delete certain files as the “nobody” user; this includ...

  • EPSS 0.41%
  • Veröffentlicht 11.01.2025 03:15:22
  • Zuletzt bearbeitet 11.01.2025 03:15:22

A wildcard expansion vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to enumerate files on the host filesystem.

  • EPSS 35.13%
  • Veröffentlicht 11.01.2025 03:15:22
  • Zuletzt bearbeitet 15.01.2025 23:15:10

An OS command injection vulnerability in Palo Alto Networks Expedition enables an unauthenticated attacker to run arbitrary OS commands as the www-data user in Expedition, which results in the disclosure of usernames, cleartext passwords, device conf...

  • EPSS 1.16%
  • Veröffentlicht 11.01.2025 03:15:22
  • Zuletzt bearbeitet 11.01.2025 03:15:22

An arbitrary file deletion vulnerability in Palo Alto Networks Expedition enables an unauthenticated attacker to delete arbitrary files accessible to the www-data user on the host filesystem.

  • EPSS 0.43%
  • Veröffentlicht 11.01.2025 03:15:22
  • Zuletzt bearbeitet 11.01.2025 03:15:22

A reflected cross-site scripting (XSS) vulnerability in Palo Alto Networks Expedition enables attackers to execute malicious JavaScript code in the context of an authenticated Expedition user’s browser if that authenticated user clicks a malicious li...

  • EPSS 0.23%
  • Veröffentlicht 11.01.2025 03:15:22
  • Zuletzt bearbeitet 11.01.2025 03:15:22

An SQL injection vulnerability in Palo Alto Networks Expedition enables an authenticated attacker to reveal Expedition database contents, such as password hashes, usernames, device configurations, and device API keys. This vulnerability also enables ...

Warnung
  • EPSS 66.59%
  • Veröffentlicht 27.12.2024 10:15:17
  • Zuletzt bearbeitet 04.11.2025 16:49:18

A Denial of Service vulnerability in the DNS Security feature of Palo Alto Networks PAN-OS software allows an unauthenticated attacker to send a malicious packet through the data plane of the firewall that reboots the firewall. Repeated attempts to t...

  • EPSS 0.06%
  • Veröffentlicht 14.11.2024 10:15:08
  • Zuletzt bearbeitet 01.10.2025 18:41:27

An improper certificate validation vulnerability in Palo Alto Networks PAN-OS software enables an authorized user with a specially crafted client certificate to connect to an impacted GlobalProtect portal or GlobalProtect gateway as a different legit...