Paloaltonetworks PAN-OS vulnerabilities
234 known vulnerabilities affecting paloaltonetworks/pan-os.
Total CVEs
234
CISA KEV
14
actively exploited
Public exploits
18
Exploited in wild
15
Severity breakdown
CRITICAL40HIGH90MEDIUM95LOW9
Vulnerabilities
Page 3 of 12
CVE-2020-2014P3HIGHCVSS 8.8≥ 7.1.0, ≤ 7.1.26≥ 8.0.0, ≤ 8.0.20+2 more2020-05-13
CVE-2020-2014 [HIGH] CWE-78 CVE-2020-2014: An OS Command Injection vulnerability in PAN-OS management server allows authenticated users to inje
An OS Command Injection vulnerability in PAN-OS management server allows authenticated users to inject and execute arbitrary shell commands with root privileges. This issue affects: All versions of PAN-OS 7.1 and 8.0; PAN-OS 8.1 versions earlier than 8.1.14; PAN-OS 9.0 versions earlier than 9.0.7.
nvd
CVE-2021-3056P3HIGHCVSS 8.8≥ 8.1.0, < 8.1.20≥ 9.0.0, < 9.0.14+2 more2021-11-10
CVE-2021-3056 [HIGH] CWE-120 CVE-2021-3056: A memory corruption vulnerability in Palo Alto Networks PAN-OS GlobalProtect Clientless VPN enables
A memory corruption vulnerability in Palo Alto Networks PAN-OS GlobalProtect Clientless VPN enables an authenticated attacker to execute arbitrary code with root user privileges during SAML authentication. This issue impacts: PAN-OS 8.1 versions earlier than PAN-OS 8.1.20; PAN-OS 9.0 versions earlier than PAN-OS 9.0.14; PAN-OS 9.1 versions earlier than P
nvd
CVE-2020-2015P3HIGHCVSS 8.8≥ 7.1.0, < 7.1.26≥ 8.0.0, ≤ 8.0.20+3 more2020-05-13
CVE-2020-2015 [HIGH] CWE-120 CVE-2020-2015: A buffer overflow vulnerability in the PAN-OS management server allows authenticated users to crash
A buffer overflow vulnerability in the PAN-OS management server allows authenticated users to crash system processes or potentially execute arbitrary code with root privileges. This issue affects: PAN-OS 7.1 versions earlier than 7.1.26; PAN-OS 8.1 versions earlier than 8.1.13; PAN-OS 9.0 versions earlier than 9.0.7; PAN-OS 9.1 versions earlier than 9.1.
nvd
CVE-2026-0258P3CRITICALCVSS 9.1fixed in 10.2.7≥ 10.2.8, < 10.2.10+169 more2026-05-13
CVE-2026-0258 [CRITICAL] CWE-918 CVE-2026-0258: A server-side request forgery (SSRF) vulnerability in the IKEv2 implementation of Palo Alto Networks
A server-side request forgery (SSRF) vulnerability in the IKEv2 implementation of Palo Alto Networks PAN-OS® software allows an unauthenticated attacker to cause the firewall to send network requests to unintended destinations or cause a denial of service (DoS) condition.
Panorama, Cloud NGFW and Prisma® Access are not impacted by these vulnerabil
nvd
CVE-2026-0286P3HIGHCVSS 7.2≥ 10.2.0, < 10.2.7≥ 10.2.8, < 10.2.10+201 more2026-07-09
CVE-2026-0286 [HIGH] CWE-78 CVE-2026-0286: A command injection vulnerability in the management plane of Palo Alto Networks PAN-OS® software ena
A command injection vulnerability in the management plane of Palo Alto Networks PAN-OS® software enables an authenticated administrator to execute arbitrary OS commands as root.
The security risk posed by this issue is significantly minimized when CLI access is restricted to a limited group of administrators.
This issue is applicable to PAN-OS softwa
nvd
CVE-2020-2006P3HIGHCVSS 8.8≥ 7.1.0, ≤ 7.1.26≥ 8.0.0, ≤ 8.0.20+1 more2020-05-13
CVE-2020-2006 [HIGH] CWE-121 CVE-2020-2006: A stack-based buffer overflow vulnerability in the management server component of PAN-OS that allows
A stack-based buffer overflow vulnerability in the management server component of PAN-OS that allows an authenticated user to potentially execute arbitrary code with root privileges. This issue affects: All versions of PAN-OS 7.1 and 8.0; PAN-OS 8.1 versions earlier than 8.1.14.
nvd
CVE-2012-6593P3CRITICALCVSS 10.0≤ 3.1.9v4.0.0+3 more2013-08-31
CVE-2012-6593 [CRITICAL] CWE-78 CVE-2012-6593: Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.4 allows remote attackers to execute ar
Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.4 allows remote attackers to execute arbitrary commands via unspecified vectors, aka Ref ID 30088.
nvd
CVE-2012-6592P3CRITICALCVSS 10.0≤ 3.1.9v4.0.0+4 more2013-08-31
CVE-2012-6592 [CRITICAL] CWE-78 CVE-2012-6592: Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.5 allows remote attackers to execute ar
Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.5 allows remote attackers to execute arbitrary commands via unspecified vectors, aka Ref ID 31091.
nvd
CVE-2019-1580P3CRITICALCVSS 9.8≤ 7.1.24≥ 8.0.0, ≤ 8.0.19+2 more2019-08-23
CVE-2019-1580 [CRITICAL] CWE-787 CVE-2019-1580: Memory corruption in PAN-OS 7.1.24 and earlier, PAN-OS 8.0.19 and earlier, PAN-OS 8.1.9 and earlier,
Memory corruption in PAN-OS 7.1.24 and earlier, PAN-OS 8.0.19 and earlier, PAN-OS 8.1.9 and earlier, and PAN-OS 9.0.3 and earlier will allow a remote, unauthenticated user to craft a message to Secure Shell Daemon (SSHD) and corrupt arbitrary memory.
nvd
CVE-2020-2039P3MEDIUMCVSS 5.3≥ 8.1.0, < 8.1.16≥ 9.0.0, < 9.0.10+2 more2020-09-09
CVE-2020-2039 [MEDIUM] CWE-400 CVE-2020-2039: An uncontrolled resource consumption vulnerability in Palo Alto Networks PAN-OS allows for a remote
An uncontrolled resource consumption vulnerability in Palo Alto Networks PAN-OS allows for a remote unauthenticated user to upload temporary files through the management web interface that are not properly deleted after the request is finished. It is possible for an attacker to disrupt the availability of the management web interface by repeatedly uplo
nvd
CVE-2016-3657P3CRITICALCVSS 9.8≥ 5.0.0, < 5.0.18≥ 5.1, < 5.1.11+3 more2016-04-12
CVE-2016-3657 [CRITICAL] CWE-119 CVE-2016-3657: Buffer overflow in the GlobalProtect Portal in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before
Buffer overflow in the GlobalProtect Portal in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5 allows remote attackers to cause a denial of service (device crash) or possibly execute arbitrary code via an SSL VPN request.
nvd
CVE-2026-0259P3HIGHCVSS 8.8fixed in 10.2.7≥ 10.2.8, < 10.2.10+169 more2026-05-13
CVE-2026-0259 [HIGH] CWE-73 CVE-2026-0259: An arbitrary File Read and Delete Vulnerability in Palo Alto Networks WildFire® WF-500 and WF-500-B
An arbitrary File Read and Delete Vulnerability in Palo Alto Networks WildFire® WF-500 and WF-500-B appliances enables users to read sensitive information and delete arbitrary files. This vulnerability affects WF-500 and WF-500-B appliances running in the default non-FIPS configuration mode.
The WildFire Appliance (WF-500, WF-500-B) software update is n
nvd
CVE-2026-0288P3HIGHCVSS 7.5≥ 10.2.0, < 10.2.7≥ 10.2.8, < 10.2.10+201 more2026-07-08
CVE-2026-0288 [HIGH] CWE-787 CVE-2026-0288: Multiple buffer overflow vulnerabilities in the User-ID Terminal Server Agent (TSA) component of Pal
Multiple buffer overflow vulnerabilities in the User-ID Terminal Server Agent (TSA) component of Palo Alto Networks PAN-OS software allow an unauthenticated attacker with network access to cause a denial of service (DoS) condition or potentially execute arbitrary code by sending specially crafted network traffic.
The security risk posed by this issue i
nvd
CVE-2012-6594P3CRITICALCVSS 9.0≤ 3.1.10v3.1.9+9 more2013-08-31
CVE-2012-6594 [CRITICAL] CWE-78 CVE-2012-6594: The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.11, 4.0.x befor
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.11, 4.0.x before 4.0.8, and 4.1.x before 4.1.1 allows remote authenticated administrators to execute arbitrary commands via unspecified vectors, aka Ref ID 34299.
nvd
CVE-2012-6595P3CRITICALCVSS 9.0v4.0.0v4.0.1+9 more2013-08-31
CVE-2012-6595 [CRITICAL] CWE-78 CVE-2012-6595: The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1
The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.2 allows remote authenticated administrators to execute arbitrary commands via unspecified vectors, aka Ref ID 34595.
nvd
CVE-2026-0273P3HIGHCVSS 7.2≥ 10.2.0, < 10.2.7≥ 10.2.8, < 10.2.10+187 more2026-06-10
CVE-2026-0273 [HIGH] CWE-78 CVE-2026-0273: A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated ad
A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user. To be able to exploit this issue, the user must have access to the PAN-OS CLI or Web UI.
The security risk posed by this issue is significantly minimized when CLI access
nvd
CVE-2019-1576P3HIGHCVSS 8.8≥ 9.0.0, ≤ 9.0.22019-07-16
CVE-2019-1576 [HIGH] CWE-78 CVE-2019-1576: Command injection in PAN-0S 9.0.2 and earlier may allow an authenticated attacker to gain access to
Command injection in PAN-0S 9.0.2 and earlier may allow an authenticated attacker to gain access to a remote shell in PAN-OS, and potentially run with the escalated user’s permissions.
nvd
CVE-2020-1998P3HIGHCVSS 8.8≥ 7.1.0, < 7.1.26≥ 8.0.0, ≤ 8.0.20+3 more2020-05-13
CVE-2020-1998 [HIGH] CWE-285 CVE-2020-1998: An improper authorization vulnerability in PAN-OS that mistakenly uses the permissions of local linu
An improper authorization vulnerability in PAN-OS that mistakenly uses the permissions of local linux users instead of the intended SAML permissions of the account when the username is shared for the purposes of SSO authentication. This can result in authentication bypass and unintended resource access for the user. This issue affects: PAN-OS 7.1 versio
nvd
CVE-2012-6600P3CRITICALCVSS 9.0v4.0.0v4.0.1+9 more2013-08-31
CVE-2012-6600 [CRITICAL] CWE-78 CVE-2012-6600: The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1
The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.2 allows remote authenticated users to execute arbitrary commands via unspecified vectors, aka Ref ID 34502.
nvd
CVE-2012-6599P3CRITICALCVSS 9.0v4.0.0v4.0.1+7 more2013-08-31
CVE-2012-6599 [CRITICAL] CWE-78 CVE-2012-6599: The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 and 4.1
The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 and 4.1.x before 4.1.1 allows remote authenticated users to execute arbitrary commands via unspecified vectors, aka Ref ID 33476.
nvd