Palo Alto Networks PAN-OS vulnerabilities
184 known vulnerabilities affecting palo_alto_networks/pan-os.
Total CVEs
184
CISA KEV
10
actively exploited
Public exploits
10
Exploited in wild
11
Severity breakdown
CRITICAL18HIGH80MEDIUM73LOW13
Vulnerabilities
Page 6 of 10
CVE-2024-3384P3HIGHCVSS 7.5≥ 8.1.0, < 8.1.24≥ 9.0.0, < 9.0.17+2 more2024-04-10
CVE-2024-3384 [HIGH] CWE-1286 CVE-2024-3384: A vulnerability in Palo Alto Networks PAN-OS software enables a remote attacker to reboot PAN-OS fir
A vulnerability in Palo Alto Networks PAN-OS software enables a remote attacker to reboot PAN-OS firewalls when receiving Windows New Technology LAN Manager (NTLM) packets from Windows servers. Repeated attacks eventually cause the firewall to enter maintenance mode, which requires manual intervention to bring the firewall back online.
nvd
CVE-2020-1981P3HIGHCVSS 7.8v8.1 < 8.1.13v8.1 !>= 8.1.13+3 more2020-03-11
CVE-2020-1981 [HIGH] CWE-377 CVE-2020-1981: A predictable temporary filename vulnerability in PAN-OS allows local privilege escalation. This iss
A predictable temporary filename vulnerability in PAN-OS allows local privilege escalation. This issue allows a local attacker who bypassed the restricted shell to execute commands as a low privileged user and gain root access on the PAN-OS hardware or virtual appliance. This issue affects only PAN-OS 8.1 versions earlier than PAN-OS 8.1.13. This issue
nvd
CVE-2026-0281P3HIGHCVSS 7.1≥ 12.1.0, < 12.1.8≥ 11.2.0, < 11.2.13+2 more2026-07-09
CVE-2026-0281 [HIGH] CWE-524 CVE-2026-0281: An information disclosure vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenti
An information disclosure vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to the management web interface to obtain web session tokens. This requires a legitimate user to first click on a malicious link provided by the attacker.
The security risk posed by this issue is minimized by restrictin
nvd
CVE-2024-8691P3HIGHCVSS 7.1≥ 9.1.0, < 9.1.17≥ 10.1.0, < 10.1.112024-09-11
CVE-2024-8691 [HIGH] CWE-863 CVE-2024-8691: A vulnerability in the GlobalProtect portal in Palo Alto Networks PAN-OS software enables a maliciou
A vulnerability in the GlobalProtect portal in Palo Alto Networks PAN-OS software enables a malicious authenticated GlobalProtect user to impersonate another GlobalProtect user. Active GlobalProtect users impersonated by an attacker who is exploiting this vulnerability are disconnected from GlobalProtect. Upon exploitation, PAN-OS logs indicate that the
nvd
CVE-2021-3046P3MEDIUMCVSS 6.5≥ 8.1, < 8.1.19≥ 9.0, < 9.0.14+2 more2021-08-11
CVE-2021-3046 [MEDIUM] CWE-287 CVE-2021-3046: An improper authentication vulnerability exists in Palo Alto Networks PAN-OS software that enables a
An improper authentication vulnerability exists in Palo Alto Networks PAN-OS software that enables a SAML authenticated attacker to impersonate any other user in the GlobalProtect Portal and GlobalProtect Gateway when they are configured to use SAML authentication. This issue impacts: PAN-OS 8.1 versions earlier than PAN-OS 8.1.19; PAN-OS 9.0 versions
nvd
CVE-2021-3054P3MEDIUMCVSS 6.6≥ 8.1, < 8.1.20≥ 9.0, < 9.0.14+3 more2021-09-08
CVE-2021-3054 [MEDIUM] CWE-367 CVE-2021-3054: A time-of-check to time-of-use (TOCTOU) race condition vulnerability in the Palo Alto Networks PAN-O
A time-of-check to time-of-use (TOCTOU) race condition vulnerability in the Palo Alto Networks PAN-OS web interface enables an authenticated administrator with permission to upload plugins to execute arbitrary code with root user privileges. This issue impacts: PAN-OS 8.1 versions earlier than PAN-OS 8.1.20; PAN-OS 9.0 versions earlier than PAN-OS 9.0
nvd
CVE-2021-3055P3MEDIUMCVSS 6.5≥ 9.0, < 9.0.14≥ 9.1, < 9.1.10+2 more2021-09-08
CVE-2021-3055 [MEDIUM] CWE-611 CVE-2021-3055: An improper restriction of XML external entity (XXE) reference vulnerability in the Palo Alto Networ
An improper restriction of XML external entity (XXE) reference vulnerability in the Palo Alto Networks PAN-OS web interface enables an authenticated administrator to read any arbitrary file from the file system and send a specifically crafted request to the firewall that causes the service to crash. Repeated attempts to send this request result in den
nvd
CVE-2025-0127P3HIGHCVSS 7.1≥ 11.0.0, < 11.0.4≥ 10.2.0, < 10.2.9+1 more2025-04-11
CVE-2025-0127 [HIGH] CWE-78 CVE-2025-0127: A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated ad
A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user. This issue is only applicable to PAN-OS VM-Series. This issue does not affect firewalls that are already deployed.
Cloud NGFW and Prisma® Access are not affected by this
nvd
CVE-2024-8687P3HIGHCVSS 7.1≥ 11.0.0, < 11.0.1≥ 10.2.0, < 10.2.4+5 more2024-09-11
CVE-2024-8687 [HIGH] CWE-497 CVE-2024-8687: An information exposure vulnerability exists in Palo Alto Networks PAN-OS software that enables a Gl
An information exposure vulnerability exists in Palo Alto Networks PAN-OS software that enables a GlobalProtect end user to learn both the configured GlobalProtect uninstall password and the configured disable or disconnect passcode. After the password or passcode is known, end users can uninstall, disable, or disconnect GlobalProtect even if the Global
nvd
CVE-2020-2003P3MEDIUMCVSS 6.5v7.1.*v8.0.*+3 more2020-05-13
CVE-2020-2003 [MEDIUM] CWE-73 CVE-2020-2003: An external control of filename vulnerability in the command processing of PAN-OS allows an authenti
An external control of filename vulnerability in the command processing of PAN-OS allows an authenticated administrator to delete arbitrary system files affecting the integrity of the system or causing denial of service to all PAN-OS services. This issue affects: All versions of PAN-OS 7.1 and 8.0; PAN-OS 8.1 versions before 8.1.14; PAN-OS 9.0 versions
nvd
CVE-2025-0125P3MEDIUMCVSS 6.9≥ 11.2.0, < 11.2.5≥ 11.1.0, < 11.1.5+3 more2025-04-11
CVE-2025-0125 [MEDIUM] CWE-83 CVE-2025-0125: An improper input neutralization vulnerability in the management web interface of the Palo Alto Netw
An improper input neutralization vulnerability in the management web interface of the Palo Alto Networks PAN-OS® software enables a malicious authenticated read-write administrator to impersonate another legitimate authenticated PAN-OS administrator.
The attacker must have network access to the management web interface to exploit this issue. You grea
nvd
CVE-2025-0115P3MEDIUMCVSS 6.8≥ 11.2.0, < 11.2.3≥ 11.1.0, < 11.1.5+3 more2025-03-12
CVE-2025-0115 [MEDIUM] CWE-41 CVE-2025-0115: A vulnerability in the Palo Alto Networks PAN-OS software enables an authenticated admin on the PAN-
A vulnerability in the Palo Alto Networks PAN-OS software enables an authenticated admin on the PAN-OS CLI to read arbitrary files.
The attacker must have network access to the management interface (web, SSH, console, or telnet) and successfully authenticate to exploit this issue. You can greatly reduce the risk of this issue by restricting access to
nvd
CVE-2022-0011P3MEDIUMCVSS 6.5v9.0.*≥ 8.1, < 8.1.21+3 more2022-02-10
CVE-2022-0011 [MEDIUM] CWE-436 CVE-2022-0011: PAN-OS software provides options to exclude specific websites from URL category enforcement and thos
PAN-OS software provides options to exclude specific websites from URL category enforcement and those websites are blocked or allowed (depending on your rules) regardless of their associated URL category. This is done by creating a custom URL category list or by using an external dynamic list (EDL) in a URL Filtering profile. When the entries in these
nvd
CVE-2024-0009P3MEDIUMCVSS 6.3≥ 10.2, < 10.2.4≥ 11.0, < 11.0.12024-02-14
CVE-2024-0009 [MEDIUM] CWE-940 CVE-2024-0009: An improper verification vulnerability in the GlobalProtect gateway feature of Palo Alto Networks PA
An improper verification vulnerability in the GlobalProtect gateway feature of Palo Alto Networks PAN-OS software enables a malicious user with stolen credentials to establish a VPN connection from an unauthorized IP address.
nvd
CVE-2023-0004P3MEDIUMCVSS 6.5≥ 8.1, < 8.1.24≥ 9.0, < 9.0.17+3 more2023-04-12
CVE-2023-0004 [MEDIUM] CWE-703 CVE-2023-0004: A local file deletion vulnerability in Palo Alto Networks PAN-OS software enables an authenticated a
A local file deletion vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to delete files from the local file system with elevated privileges.
These files can include logs and system components that impact the integrity and availability of PAN-OS software.
nvd
CVE-2026-0279P3MEDIUMCVSS 6.1≥ 12.1.0, < 12.1.8≥ 11.2.0, < 11.2.13+2 more2026-07-09
CVE-2026-0279 [MEDIUM] CWE-79 CVE-2026-0279: Multiple cross site scripting vulnerabilities in the User-ID™ Authentication Portal (aka Captive Por
Multiple cross site scripting vulnerabilities in the User-ID™ Authentication Portal (aka Captive Portal) service, GlobalProtect™ gateway/portal features and Clientless VPN of Palo Alto Networks PAN-OS® software enables a malicious unauthenticated user to store or execute malicious JavaScript payload.
The security risk posed by this issue is minimized
nvd
CVE-2020-2016P4HIGHCVSS 7.0v8.0.*≥ 7.1, < 7.1.26+2 more2020-05-13
CVE-2020-2016 [HIGH] CWE-377 CVE-2020-2016: A race condition due to insecure creation of a file in a temporary directory vulnerability in PAN-OS
A race condition due to insecure creation of a file in a temporary directory vulnerability in PAN-OS allows for root privilege escalation from a limited linux user account. This allows an attacker who has escaped the restricted shell as a low privilege administrator, possibly by exploiting another vulnerability, to escalate privileges to become root use
nvd
CVE-2024-3387P4MEDIUMCVSS 5.9≥ 10.1.0, < 10.1.12≥ 10.2.0, < 10.2.7-h3+2 more2024-04-10
CVE-2024-3387 [MEDIUM] CWE-326 CVE-2024-3387: A weak (low bit strength) device certificate in Palo Alto Networks Panorama software enables an atta
A weak (low bit strength) device certificate in Palo Alto Networks Panorama software enables an attacker to perform a meddler-in-the-middle (MitM) attack to capture encrypted traffic between the Panorama management server and the firewalls it manages. With sufficient computing resources, the attacker could break encrypted communication and expose sens
nvd
CVE-2023-6795P4MEDIUMCVSS 4.7≥ 8.1, < 8.1.24-h1≥ 9.0, < 9.0.17+3 more2023-12-13
CVE-2023-6795 [MEDIUM] CWE-78 CVE-2023-6795: An OS command injection vulnerability in Palo Alto Networks PAN-OS software enables an authenticated
An OS command injection vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to disrupt system processes and potentially execute arbitrary code with limited privileges on the firewall.
nvd
CVE-2018-10139P4MEDIUMCVSS 6.1v6.1.21 and earlierv7.1.18 and earlier+1 more2018-08-16
CVE-2018-10139 [MEDIUM] CWE-79 CVE-2018-10139: The PAN-OS response for GlobalProtect Gateway in Palo Alto Networks PAN-OS 6.1.21 and earlier, PAN-O
The PAN-OS response for GlobalProtect Gateway in Palo Alto Networks PAN-OS 6.1.21 and earlier, PAN-OS 7.1.18 and earlier, PAN-OS 8.0.11 and earlier may allow an unauthenticated attacker to inject arbitrary JavaScript or HTML. PAN-OS 8.1 is NOT affected.
nvd