Paloaltonetworks

Prisma Access

34 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 4.37%
  • Veröffentlicht 11.01.2025 03:15:22
  • Zuletzt bearbeitet 23.01.2026 21:56:51

An arbitrary file deletion vulnerability in Palo Alto Networks Expedition enables an unauthenticated attacker to delete arbitrary files accessible to the www-data user on the host filesystem.

  • EPSS 0.77%
  • Veröffentlicht 11.01.2025 03:15:22
  • Zuletzt bearbeitet 23.01.2026 22:03:41

A reflected cross-site scripting (XSS) vulnerability in Palo Alto Networks Expedition enables attackers to execute malicious JavaScript code in the context of an authenticated Expedition user’s browser if that authenticated user clicks a malicious li...

  • EPSS 0.46%
  • Veröffentlicht 11.01.2025 03:15:22
  • Zuletzt bearbeitet 23.01.2026 22:03:57

An SQL injection vulnerability in Palo Alto Networks Expedition enables an authenticated attacker to reveal Expedition database contents, such as password hashes, usernames, device configurations, and device API keys. This vulnerability also enables ...

Warnung
  • EPSS 79.72%
  • Veröffentlicht 27.12.2024 10:15:17
  • Zuletzt bearbeitet 04.11.2025 16:49:18

A Denial of Service vulnerability in the DNS Security feature of Palo Alto Networks PAN-OS software allows an unauthenticated attacker to send a malicious packet through the data plane of the firewall that reboots the firewall. Repeated attempts to t...

  • EPSS 0.15%
  • Veröffentlicht 14.11.2024 10:15:08
  • Zuletzt bearbeitet 01.10.2025 18:41:27

An improper certificate validation vulnerability in Palo Alto Networks PAN-OS software enables an authorized user with a specially crafted client certificate to connect to an impacted GlobalProtect portal or GlobalProtect gateway as a different legit...

  • EPSS 0.6%
  • Veröffentlicht 09.10.2024 17:15:20
  • Zuletzt bearbeitet 01.12.2025 17:19:55

A memory corruption vulnerability in Palo Alto Networks PAN-OS software allows an unauthenticated attacker to crash PAN-OS due to a crafted packet through the data plane, resulting in a denial of service (DoS) condition. Repeated attempts to trigger ...

  • EPSS 0.38%
  • Veröffentlicht 11.09.2024 17:15:14
  • Zuletzt bearbeitet 03.10.2024 00:26:56

An information exposure vulnerability exists in Palo Alto Networks PAN-OS software that enables a GlobalProtect end user to learn both the configured GlobalProtect uninstall password and the configured disable or disconnect passcode. After the passwo...

  • EPSS 0.42%
  • Veröffentlicht 10.07.2024 19:15:11
  • Zuletzt bearbeitet 30.01.2026 21:11:32

An arbitrary file upload vulnerability in Palo Alto Networks Panorama software enables an authenticated read-write administrator with access to the web interface to disrupt system processes and crash the Panorama. Repeated attacks eventually cause th...

  • EPSS 0.2%
  • Veröffentlicht 10.04.2024 17:15:57
  • Zuletzt bearbeitet 24.01.2025 16:16:18

A vulnerability in the GlobalProtect Gateway in Palo Alto Networks PAN-OS software enables an authenticated attacker to impersonate another user and send network packets to internal assets. However, this vulnerability does not allow the attacker to r...

  • EPSS 0.13%
  • Veröffentlicht 10.04.2024 17:15:57
  • Zuletzt bearbeitet 30.01.2026 21:13:20

A weak (low bit strength) device certificate in Palo Alto Networks Panorama software enables an attacker to perform a meddler-in-the-middle (MitM) attack to capture encrypted traffic between the Panorama management server and the firewalls it manages...