Vulnerability index

Browse CVEs

29 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.1 CVE-2026-0274 An improper validation of credentials vulnerability in the CommvaultSecurityIQ integration for Cortex XSOAR and Cortex XSIAM allows an unauthenticate… Cortex Xsiam Commvaultsecurityiq Marketplace Mitigation only Fix from $2,3002026-06-10 CRITICAL 9.8 CVE-2026-0300 KEVEPSS 32% A buffer overflow vulnerability in the User-ID™ Authentication Portal (aka Captive Portal) service of Palo Alto Networks PAN-OS software allows an un… Pan Os Mitigation only Fix from $2,3002026-05-06 CRITICAL 9.8 CVE-2024-0012 KEVEPSS 100% An authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web interfac… Pan Os Mitigation only Fix from $2,3002024-11-18 CRITICAL 10.0 CVE-2024-3400 KEVEPSS 100% A command injection as a result of arbitrary file creation vulnerability in the GlobalProtect feature of Palo Alto Networks PAN-OS software for speci… Pan Os Mitigation only Fix from $2,3002024-04-12 MEDIUM 6.7 CVE-2022-0031 A local privilege escalation (PE) vulnerability in the Palo Alto Networks Cortex XSOAR engine software running on a Linux operating system allows a l… Cortex Xsoar Mitigation only Fix from $1,6002022-11-09 MEDIUM 6.7 CVE-2022-0026 A local privilege escalation (PE) vulnerability exists in Palo Alto Networks Cortex XDR agent software on Windows that enables an authenticated local… Cortex Xdr Agent Mitigation only Fix from $1,6002022-05-11 MEDIUM 5.4 CVE-2022-0020 A stored cross-site scripting (XSS) vulnerability in Palo Alto Network Cortex XSOAR web interface enables an authenticated network-based attacker to … Cortex Xsoar No fix yet Fix from $1,6002022-02-10 HIGH 8.1 CVE-2021-3051 An improper verification of cryptographic signature vulnerability exists in Cortex XSOAR SAML authentication that enables an unauthenticated network-… Cortex Xsoar Mitigation only Fix from $1,9502021-09-08 HIGH 7.8 CVE-2021-3042 A local privilege escalation (PE) vulnerability exists in the Palo Alto Networks Cortex XDR agent on Windows platforms that enables an authenticated … Cortex Xdr Agent Mitigation only Fix from $1,9502021-07-15 CRITICAL 9.8 CVE-2021-3044 An improper authorization vulnerability in Palo Alto Networks Cortex XSOAR enables a remote unauthenticated attacker with network access to the Corte… Cortex Xsoar Mitigation only Fix from $2,3002021-06-22 MEDIUM 5.1 CVE-2021-3034 An information exposure through log file vulnerability exists in Cortex XSOAR software where the secrets configured for the SAML single sign-on (SSO)… Cortex Xsoar Mitigation only Fix from $1,6002021-03-10 CRITICAL 9.8 CVE-2021-3033 An improper verification of cryptographic signature vulnerability exists in the Palo Alto Networks Prisma Cloud Compute console. This vulnerability e… Prisma Cloud Mitigation only Fix from $2,3002021-02-10 HIGH 7.8 CVE-2020-1984 Secdo tries to execute a script at a hardcoded path if present, which allows a local authenticated user with 'create folders or append data' access t… Secdo Mitigation only Fix from $1,9502020-04-08 HIGH 7.8 CVE-2020-1985 Incorrect Default Permissions on C:\Programdata\Secdo\Logs folder in Secdo allows local authenticated users to overwrite system files and gain escala… Secdo Mitigation only Fix from $1,9502020-04-08 MEDIUM 5.5 CVE-2020-1986 Improper input validation vulnerability in Secdo allows an authenticated local user with 'create folders or append data' access to the root of the OS… Secdo Mitigation only Fix from $1,6002020-04-08 MEDIUM 6.1 CVE-2019-1568 Cross-site scripting (XSS) vulnerability in Palo Alto Networks Demisto 4.5 build 40249 may allow an unauthenticated attacker to run arbitrary JavaScr… Demisto Mitigation only Fix from $1,6002019-05-09 HIGH 7.5 CVE-2019-1572 PAN-OS 9.0.0 may allow an unauthenticated remote user to access php files. Pan Os Mitigation only Fix from $1,9502019-03-26 CRITICAL 9.8 CVE-2018-10143EPSS 25% The Palo Alto Networks Expedition Migration tool 1.0.107 and earlier may allow an unauthenticated attacker with remote access to run system level com… Expedition No fix yet Fix from $2,3002018-12-12 HIGH 7.5 CVE-2018-10142 The Expedition Migration tool 1.0.106 and earlier may allow an unauthenticated attacker to enumerate files on the operating system. Expedition Mitigation only Fix from $1,9502018-11-27 MEDIUM 6.1 CVE-2018-7636 The URL filtering "continue page" hosted by PAN-OS 8.0.10 and earlier may allow an attacker to inject arbitrary JavaScript or HTML via specially craf… Pan Os Mitigation only Fix from $1,6002018-07-03 MEDIUM 5.9 CVE-2017-17841 Palo Alto Networks PAN-OS 6.1, 7.1, and 8.0.x before 8.0.7, when an interface implements SSL decryption with RSA enabled or hosts a GlobalProtect por… Pan Os Mitigation only Fix from $1,6002018-01-10 MEDIUM 5.3 CVE-2017-6356 Palo Alto Networks Terminal Services (aka TS) Agent 6.0, 7.0, and 8.0 before 8.0.1 uses weak permissions for unspecified resources, which allows atta… Terminal Services Agent Mitigation only Fix from $1,6002017-03-20 MEDIUM 5.4 CVE-2017-5584 Cross-site scripting (XSS) vulnerability in the Management Web Interface in Palo Alto Networks PAN-OS 5.1, 6.x before 6.1.16, 7.0.x before 7.0.13, an… Pan Os Mitigation only Fix from $1,6002017-03-15 MEDIUM 5.4 CVE-2016-2219 Cross-site scripting (XSS) vulnerability in the management interface in Palo Alto Networks PAN-OS 7.x before 7.0.8 allows remote authenticated users … Pan Os Mitigation only Fix from $1,6002016-07-12 HIGH 9.0 CVE-2012-6595 The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.2 allows remote authenticated admin… Pan Os Mitigation only Fix from $1,9502013-08-31 HIGH 9.0 CVE-2012-6598 The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 allows remote authenticated users to execute arbitrary c… Pan Os Mitigation only Fix from $1,9502013-08-31 HIGH 9.0 CVE-2012-6599 The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 and 4.1.x before 4.1.1 allows remote authenticated users… Pan Os Mitigation only Fix from $1,9502013-08-31 HIGH 9.0 CVE-2012-6600 The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.2 allows remote authenticated users… Pan Os Mitigation only Fix from $1,9502013-08-31 MEDIUM 5.0 CVE-2012-6596 Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.3 stores cleartext LDAP bind passwords in authd.log, which allows context-dependent… Pan Os Mitigation only Fix from $1,6002013-08-31