Palo Alto Networks PAN-OS vulnerabilities
184 known vulnerabilities affecting palo_alto_networks/pan-os.
Total CVEs
184
CISA KEV
10
actively exploited
Public exploits
10
Exploited in wild
11
Severity breakdown
CRITICAL18HIGH80MEDIUM73LOW13
Vulnerabilities
Page 7 of 10
CVE-2021-3048P4MEDIUMCVSS 5.9≥ 9.0, < 9.0.14≥ 9.1, < 9.1.9+1 more2021-08-11
CVE-2021-3048 [MEDIUM] CWE-20 CVE-2021-3048: Certain invalid URL entries contained in an External Dynamic List (EDL) cause the Device Server daem
Certain invalid URL entries contained in an External Dynamic List (EDL) cause the Device Server daemon (devsrvr) to stop responding. This condition causes subsequent commits on the firewall to fail and prevents administrators from performing commits and configuration changes even though the firewall remains otherwise functional. If the firewall then re
nvd
CVE-2022-0023P4MEDIUMCVSS 5.9≥ 8.1, < 8.1.22≥ 9.1, < 9.1.13+3 more2022-04-13
CVE-2022-0023 [MEDIUM] CWE-755 CVE-2022-0023: An improper handling of exceptional conditions vulnerability exists in the DNS proxy feature of Palo
An improper handling of exceptional conditions vulnerability exists in the DNS proxy feature of Palo Alto Networks PAN-OS software that enables a meddler-in-the-middle (MITM) to send specifically crafted traffic to the firewall that causes the service to restart unexpectedly. Repeated attempts to send this request result in denial-of-service to all PA
nvd
CVE-2025-4229P4MEDIUMCVSS 6.0≥ 11.2.0, < 11.2.7≥ 11.1.0, < 11.1.10+2 more2025-06-13
CVE-2025-4229 [MEDIUM] CWE-497 CVE-2025-4229: An information disclosure vulnerability in the SD-WAN feature of Palo Alto Networks PAN-OS® software
An information disclosure vulnerability in the SD-WAN feature of Palo Alto Networks PAN-OS® software enables an unauthorized user to view unencrypted data sent from the firewall through the SD-WAN interface. This requires the user to be able to intercept packets sent from the firewall.
Cloud NGFW and Prisma® Access are not affected by this vulnerabil
nvd
CVE-2020-1999P4MEDIUMCVSS 5.3v7.1.*v8.0.*+3 more2020-11-12
CVE-2020-1999 [MEDIUM] CWE-754 CVE-2020-1999: A vulnerability exists in the Palo Alto Network PAN-OS signature-based threat detection engine that
A vulnerability exists in the Palo Alto Network PAN-OS signature-based threat detection engine that allows an attacker to communicate with devices in the network in a way that is not analyzed for threats by sending data through specifically crafted TCP packets. This technique evades signature-based threat detection. This issue impacts: PAN-OS 8.1 versi
nvd
CVE-2026-0309P4MEDIUMCVSS 4.0≥ 12.2.0, < 12.2.3≥ 12.1.0, < 12.1.4-h10+3 more2026-09-10
CVE-2026-0309 [MEDIUM] CWE-78 CVE-2026-0309: A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated ad
A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user. To be able to exploit this issue, the user must have access to the PAN-OS CLI and the device must be configured with a Luna Hardware Security Module (HSM).
The security
nvd
CVE-2020-1997P4MEDIUMCVSS 6.1≥ 7.1, < 7.1.26≥ 8.0, < 8.0.142020-05-13
CVE-2020-1997 [MEDIUM] CWE-601 CVE-2020-1997: An open redirection vulnerability in the GlobalProtect component of Palo Alto Networks PAN-OS allows
An open redirection vulnerability in the GlobalProtect component of Palo Alto Networks PAN-OS allows an attacker to specify an arbitrary redirection target away from the trusted GlobalProtect gateway. If the user then successfully authenticates it will cause them to access an unexpected and potentially malicious website. This issue affects: PAN-OS 7.1
nvd
CVE-2024-2552P4MEDIUMCVSS 6.0≥ 11.2.0, < 11.2.4≥ 11.1.0, < 11.1.5+2 more2024-11-14
CVE-2024-2552 [MEDIUM] CWE-22 CVE-2024-2552: A command injection vulnerability in Palo Alto Networks PAN-OS software enables an authenticated adm
A command injection vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to bypass system restrictions in the management plane and delete files on the firewall.
nvd
CVE-2020-1996P4MEDIUMCVSS 5.3v7.1.*v8.0.*+2 more2020-05-13
CVE-2020-1996 [MEDIUM] CWE-862 CVE-2020-1996: A missing authorization vulnerability in the management server component of PAN-OS Panorama allows a
A missing authorization vulnerability in the management server component of PAN-OS Panorama allows a remote unauthenticated user to inject messages into the management server ms.log file. This vulnerability can be leveraged to obfuscate an ongoing attack or fabricate log entries in the ms.log file This issue affects: All versions of PAN-OS 7.1 and 8.0
nvd
CVE-2021-3045P4MEDIUMCVSS 4.9≥ 8.1, < 8.1.19≥ 9.0, < 9.0.14+1 more2021-08-11
CVE-2021-3045 [MEDIUM] CWE-88 CVE-2021-3045: An OS command argument injection vulnerability in the Palo Alto Networks PAN-OS web interface enable
An OS command argument injection vulnerability in the Palo Alto Networks PAN-OS web interface enables an authenticated administrator to read any arbitrary file from the file system. This issue impacts: PAN-OS 8.1 versions earlier than PAN-OS 8.1.19; PAN-OS 9.0 versions earlier than PAN-OS 9.0.14; PAN-OS 9.1 versions earlier than PAN-OS 9.1.10. PAN-OS 1
nvd
CVE-2023-6794P4MEDIUMCVSS 4.7≥ 8.1, < 8.1.26≥ 9.0, < 9.0.17-h1+1 more2023-12-13
CVE-2023-6794 [MEDIUM] CWE-434 CVE-2023-6794: An arbitrary file upload vulnerability in Palo Alto Networks PAN-OS software enables an authenticate
An arbitrary file upload vulnerability in Palo Alto Networks PAN-OS software enables an authenticated read-write administrator with access to the web interface to disrupt system processes and potentially execute arbitrary code with limited privileges on the firewall.
nvd
CVE-2025-0116P4MEDIUMCVSS 6.8≥ 11.2.0, < 11.2.5≥ 11.1.0, < 11.1.8+2 more2025-03-12
CVE-2025-0116 [MEDIUM] CWE-754 CVE-2025-0116: A Denial of Service (DoS) vulnerability in Palo Alto Networks PAN-OS software causes the firewall to
A Denial of Service (DoS) vulnerability in Palo Alto Networks PAN-OS software causes the firewall to unexpectedly reboot when processing a specially crafted LLDP frame sent by an unauthenticated adjacent attacker. Repeated attempts to initiate this condition causes the firewall to enter maintenance mode.
This issue does not apply to Cloud NGFWs or Pr
nvd
CVE-2020-2017P4MEDIUMCVSS 6.1v8.0.*≥ 7.1, < 7.1.26+2 more2020-05-13
CVE-2020-2017 [MEDIUM] CWE-79 CVE-2020-2017: A DOM-Based Cross Site Scripting Vulnerability exists in PAN-OS and Panorama Management Web Interfac
A DOM-Based Cross Site Scripting Vulnerability exists in PAN-OS and Panorama Management Web Interfaces. A remote attacker able to convince an authenticated administrator to click on a crafted link to PAN-OS and Panorama Web Interfaces could execute arbitrary JavaScript code in the administrator's browser and perform administrative actions. This issue a
nvd
CVE-2025-0136P4MEDIUMCVSS 5.3≥ 11.1.0, < 11.1.5≥ 11.0.0, < 11.0.7+2 more2025-05-14
CVE-2025-0136 [MEDIUM] CWE-319 CVE-2025-0136: Using the AES-128-CCM algorithm for IPSec on certain Palo Alto Networks PAN-OS® firewalls (PA-7500,
Using the AES-128-CCM algorithm for IPSec on certain Palo Alto Networks PAN-OS® firewalls (PA-7500, PA-5400, PA-5400f, PA-3400, PA-1600, PA-1400, and PA-400 Series) leads to unencrypted data transfer to devices that are connected to the PAN-OS firewall through IPSec.
This issue does not affect Cloud NGFWs, Prisma® Access instances, or PAN-OS VM-Series
nvd
CVE-2024-3388P4MEDIUMCVSS 5.0≥ 8.1.0, < 8.1.26≥ 9.0.0, < 9.0.17-h4+4 more2024-04-10
CVE-2024-3388 [MEDIUM] CWE-269 CVE-2024-3388: A vulnerability in the GlobalProtect Gateway in Palo Alto Networks PAN-OS software enables an authen
A vulnerability in the GlobalProtect Gateway in Palo Alto Networks PAN-OS software enables an authenticated attacker to impersonate another user and send network packets to internal assets. However, this vulnerability does not allow the attacker to receive response packets from those internal assets.
nvd
CVE-2024-5911P4MEDIUMCVSS 4.9≥ 10.2.0, < 10.2.4≥ 10.1.0, < 10.1.92024-07-10
CVE-2024-5911 [MEDIUM] CWE-434 CVE-2024-5911: An arbitrary file upload vulnerability in Palo Alto Networks Panorama software enables an authentica
An arbitrary file upload vulnerability in Palo Alto Networks Panorama software enables an authenticated read-write administrator with access to the web interface to disrupt system processes and crash the Panorama. Repeated attacks eventually cause the Panorama to enter maintenance mode, which requires manual intervention to bring the Panorama back onl
nvd
CVE-2026-0285P4MEDIUMCVSS 4.9≥ 12.1.0, < 12.1.8≥ 11.2.0, < 11.2.13+2 more2026-07-09
CVE-2026-0285 [MEDIUM] CWE-918 CVE-2026-0285: A server-side request forgery (SSRF) vulnerability in Palo Alto Networks PAN-OS software enables an
A server-side request forgery (SSRF) vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator with network access to the management web interface to make unauthorized requests from the firewall to internal services.
The security risk posed by this issue is minimized when the management interface is restricted to only
nvd
CVE-2024-5913P4MEDIUMCVSS 6.8≥ 10.1.0, < 10.1.14-h2≥ 10.2.0, < 10.2.10+3 more2024-07-10
CVE-2024-5913 [MEDIUM] CWE-20 CVE-2024-5913: An improper input validation vulnerability in Palo Alto Networks PAN-OS software enables an attacker
An improper input validation vulnerability in Palo Alto Networks PAN-OS software enables an attacker with the ability to tamper with the physical file system to elevate privileges.
nvd
CVE-2026-0269P4MEDIUMCVSS 5.7≥ 12.1.0, < 12.1.5≥ 11.2.0, < 11.2.10+2 more2026-06-10
CVE-2026-0269 [MEDIUM] CWE-754 CVE-2026-0269: A memory corruption vulnerability in the processing of tunnel traffic in Palo Alto Networks PAN-OS®
A memory corruption vulnerability in the processing of tunnel traffic in Palo Alto Networks PAN-OS® software allows an authenticated user to initiate system reboots using a maliciously crafted packet. Repeated attempts to initiate a reboot causes the firewall to enter maintenance mode.
Panorama, Cloud NGFW, and Prisma® Access are not impacted by this
nvd
CVE-2020-1993P4MEDIUMCVSS 5.4v8.0.*v7.1.*+2 more2020-05-13
CVE-2020-1993 [MEDIUM] CWE-384 CVE-2020-1993: The GlobalProtect Portal feature in PAN-OS does not set a new session identifier after a successful
The GlobalProtect Portal feature in PAN-OS does not set a new session identifier after a successful user login, which allows session fixation attacks, if an attacker is able to control a user's session ID. This issue affects: All PAN-OS 7.1 and 8.0 versions; PAN-OS 8.1 versions earlier than 8.1.14; PAN-OS 9.0 versions earlier than 9.0.8.
nvd
CVE-2024-5917P4MEDIUMCVSS 4.9≥ 10.2.0, < 10.2.2≥ 10.1.0, < 10.1.72024-11-14
CVE-2024-5917 [MEDIUM] CWE-918 CVE-2024-5917: A server-side request forgery in PAN-OS software enables an authenticated attacker with administrati
A server-side request forgery in PAN-OS software enables an authenticated attacker with administrative privileges to use the administrative web interface as a proxy, which enables the attacker to view internal network resources not otherwise accessible.
nvd