Vulnerability index

Browse CVEs

301 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Traps HIGH 7.5
CVE-2017-7408

Palo Alto Networks Traps ESM Console before 3.4.4 allows attackers to cause a denial of service by leveraging improper validation of requests to revo…

Fix: after 3.4.3
Fix from $1,950 2017-04-14
Terminal Services Agent MEDIUM 5.3
CVE-2017-6356

Palo Alto Networks Terminal Services (aka TS) Agent 6.0, 7.0, and 8.0 before 8.0.1 uses weak permissions for unspecified resources, which allows atta…

Mitigation only
Fix from $1,600 2017-03-20
Pan Os MEDIUM 6.5
CVE-2017-5583

The Management Web Interface in Palo Alto Networks PAN-OS before 6.1.16, 7.0.x before 7.0.13, and 7.1.x before 7.1.8 allows remote authenticated user…

Fix: after 6.1.15
Fix from $1,600 2017-03-15
Pan Os MEDIUM 5.4
CVE-2017-5584

Cross-site scripting (XSS) vulnerability in the Management Web Interface in Palo Alto Networks PAN-OS 5.1, 6.x before 6.1.16, 7.0.x before 7.0.13, an…

Mitigation only
Fix from $1,600 2017-03-15
Terminal Services Agent HIGH 7.8
CVE-2017-5329

Palo Alto Networks Terminal Services Agent before 7.0.7 allows local users to gain privileges via vectors that trigger an out-of-bounds write operati…

Fix: after 7.0.6
Fix from $1,950 2017-01-27
Terminal Services Agent HIGH 7.5
CVE-2017-5328

Palo Alto Networks Terminal Services Agent before 7.0.7 allows attackers to spoof arbitrary users via unspecified vectors.

Fix: after 7.0.6
Fix from $1,950 2017-01-27
Pan Os HIGH 7.8
CVE-2016-9151

Palo Alto Networks PAN-OS before 5.0.20, 5.1.x before 5.1.13, 6.0.x before 6.0.15, 6.1.x before 6.1.15, 7.0.x before 7.0.11, and 7.1.x before 7.1.6 a…

Fix: 5.0.20 / 5.1.13+
Fix from $1,950 2016-11-19
Pan Os CRITICAL 9.8
CVE-2016-9150EPSS 35%

Buffer overflow in the management web interface in Palo Alto Networks PAN-OS before 5.0.20, 5.1.x before 5.1.13, 6.0.x before 6.0.15, 6.1.x before 6.…

Fix: 5.0.20 / 5.1.13+
Fix from $2,300 2016-11-19
Pan Os MEDIUM 6.5
CVE-2016-9149

The Addresses Object parser in Palo Alto Networks PAN-OS before 5.0.20, 5.1.x before 5.1.13, 6.0.x before 6.0.15, 6.1.x before 6.1.15, 7.0.x before 7…

Fix: 5.0.20 / 5.1.13+
Fix from $1,600 2016-11-19
Pan Os HIGH 7.8
CVE-2016-1712

Palo Alto Networks PAN-OS before 5.0.19, 5.1.x before 5.1.12, 6.0.x before 6.0.14, 6.1.x before 6.1.12, and 7.0.x before 7.0.8 might allow local user…

Fix: 5.0.19 / 5.1.12+
Fix from $1,950 2016-08-02
Pan Os MEDIUM 5.4
CVE-2016-2219

Cross-site scripting (XSS) vulnerability in the management interface in Palo Alto Networks PAN-OS 7.x before 7.0.8 allows remote authenticated users …

Mitigation only
Fix from $1,600 2016-07-12
Pan Os CRITICAL 9.8
CVE-2016-3657

Buffer overflow in the GlobalProtect Portal in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.…

Fix: 5.0.18 / 5.1.11+
Fix from $2,300 2016-04-12
Pan Os HIGH 7.5
CVE-2016-3656

The GlobalProtect Portal in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5H2 allows remote…

Fix: 5.0.18 / 5.1.11+
Fix from $1,950 2016-04-12
Pan Os CRITICAL 9.8
CVE-2016-3655

The management web interface in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5 allows remo…

Fix: 5.0.18 / 5.1.11+
Fix from $2,300 2016-04-12
Pan Os HIGH 7.2
CVE-2016-3654

The device management command line interface (CLI) in Palo Alto Networks PAN-OS before 5.0.18, 5.1.x before 5.1.11, 6.0.x before 6.0.13, 6.1.x before…

Fix: 5.0.18 / 5.1.11+
Fix from $1,950 2016-04-12
Pan Os HIGH 10.0
CVE-2012-6592

Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.5 allows remote attackers to execute arbitrary commands via unspecified vectors, aka Ref…

Fix: after 3.1.9
Fix from $1,950 2013-08-31
Pan Os HIGH 10.0
CVE-2012-6593

Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.4 allows remote attackers to execute arbitrary commands via unspecified vectors, aka Ref…

Fix: after 3.1.9
Fix from $1,950 2013-08-31
Pan Os HIGH 10.0
CVE-2012-6601

The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.12, 4.0.x before 4.0.10, and 4.1.x before 4.1.4 allows remote at…

Fix: after 3.1.11
Fix from $1,950 2013-08-31
Pan Os HIGH 10.0
CVE-2012-6603

The web management UI in Palo Alto Networks PAN-OS before 3.1.12, 4.0.x before 4.0.10, and 4.1.x before 4.1.4 allows remote attackers to bypass authe…

Fix: after 3.1.11
Fix from $1,950 2013-08-31
Pan Os HIGH 9.0
CVE-2012-6591

The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.5 allows remote authenticated administra…

Fix: after 3.1.9
Fix from $1,950 2013-08-31
Pan Os HIGH 9.0
CVE-2012-6594

The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.11, 4.0.x before 4.0.8, and 4.1.x before 4.1.1 allows remote aut…

Fix: after 3.1.10
Fix from $1,950 2013-08-31
Pan Os HIGH 9.0
CVE-2012-6595

The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.2 allows remote authenticated admin…

Mitigation only
Fix from $1,950 2013-08-31
Pan Os HIGH 9.0
CVE-2012-6598

The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 allows remote authenticated users to execute arbitrary c…

Mitigation only
Fix from $1,950 2013-08-31
Pan Os HIGH 9.0
CVE-2012-6599

The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 and 4.1.x before 4.1.1 allows remote authenticated users…

Mitigation only
Fix from $1,950 2013-08-31
Pan Os HIGH 9.0
CVE-2012-6600

The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.2 allows remote authenticated users…

Mitigation only
Fix from $1,950 2013-08-31
Pan Os HIGH 9.0
CVE-2012-6602

The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.4 allows remote authenticated users to e…

Fix: after 3.1.9
Fix from $1,950 2013-08-31
Pan Os HIGH 9.0
CVE-2012-6604

The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.11 and 4.0.x before 4.0.9 allows remote authenticated users to e…

Fix: after 3.1.10
Fix from $1,950 2013-08-31
Pan Os HIGH 9.0
CVE-2012-6605

The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.11 and 4.0.x before 4.0.9 allows remote authenticated users to e…

Fix: after 3.1.10
Fix from $1,950 2013-08-31
Pan Os MEDIUM 6.3
CVE-2012-6597

Palo Alto Networks PAN-OS before 3.1.11 and 4.0.x before 4.0.9 allows remote authenticated users to cause a denial of service (management-server cras…

Fix: after 3.1.10
Fix from $1,600 2013-08-31
Globalprotect MEDIUM 5.8
CVE-2012-6606

Palo Alto Networks GlobalProtect before 1.1.7, and NetConnect, does not verify X.509 certificates from SSL servers, which allows man-in-the-middle at…

Fix: after 1.1.6
Fix from $1,600 2013-08-31