Vulnerability index

Browse CVEs

301 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.0 CVE-2025-0120 A vulnerability with a privilege management mechanism in the Palo Alto Networks GlobalProtect™ app on Windows devices allows a locally authenticated … Globalprotect 6.0.12 / 6.2.7-1077+ Fix from $1,9502025-04-11 HIGH 8.0 CVE-2025-0118 A vulnerability in the Palo Alto Networks GlobalProtect app on Windows allows a remote attacker to run ActiveX controls within the context of an auth… Globalprotect 6.0.11 / 6.1.6+ Fix from $1,9502025-03-12 HIGH 7.5 CVE-2025-0114 A Denial of Service (DoS) vulnerability in the GlobalProtect feature of Palo Alto Networks PAN-OS software enables an unauthenticated attacker to ren… Pan Os 10.1.14 / 10.2.5+ Fix from $1,9502025-03-12 CRITICAL 9.1 CVE-2025-0108 KEVEPSS 98% An authentication bypass in the Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web inte… Pan Os 10.1.14 / 10.2.7+ Fix from $2,3002025-02-12 MEDIUM 6.5 CVE-2025-0111 KEV An authenticated file read vulnerability in the Palo Alto Networks PAN-OS software enables an authenticated attacker with network access to the manag… Pan Os 10.1.14 / 10.2.7+ Fix from $1,6002025-02-12 CRITICAL 9.8 CVE-2025-0107EPSS 79% An OS command injection vulnerability in Palo Alto Networks Expedition enables an unauthenticated attacker to run arbitrary OS commands as the www-da… Expedition 1.2.101+ Fix from $2,3002025-01-11 CRITICAL 9.1 CVE-2025-0105EPSS 13% An arbitrary file deletion vulnerability in Palo Alto Networks Expedition enables an unauthenticated attacker to delete arbitrary files accessible to… Expedition 1.2.101+ Fix from $2,3002025-01-11 HIGH 8.8 CVE-2025-0103 An SQL injection vulnerability in Palo Alto Networks Expedition enables an authenticated attacker to reveal Expedition database contents, such as pas… Expedition 1.2.101+ Fix from $1,9502025-01-11 MEDIUM 6.1 CVE-2025-0104 A reflected cross-site scripting (XSS) vulnerability in Palo Alto Networks Expedition enables attackers to execute malicious JavaScript code in the c… Expedition 1.2.101+ Fix from $1,6002025-01-11 MEDIUM 5.3 CVE-2025-0106 A wildcard expansion vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to enumerate files on the host filesystem. Expedition 1.2.101+ Fix from $1,6002025-01-11 HIGH 7.5 CVE-2024-3393 KEVEPSS 29% A Denial of Service vulnerability in the DNS Security feature of Palo Alto Networks PAN-OS software allows an unauthenticated attacker to send a mali… Pan Os 11.2.3+ Fix from $1,9502024-12-27 HIGH 8.8 CVE-2024-5921 An insufficient certification validation issue in the Palo Alto Networks GlobalProtect app enables attackers to connect the GlobalProtect app to arbi… Globalprotect 6.1.6 / 6.1.7+ Fix from $1,9502024-11-27 HIGH 7.2 CVE-2024-9474 KEVEPSS 95% A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS administrator with access to the management web interface … Pan Os 10.1.14 / 10.2.12+ Fix from $1,9502024-11-18 CRITICAL 9.8 CVE-2024-0012 KEVEPSS 100% An authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web interfac… Pan Os Mitigation only Fix from $2,3002024-11-18 MEDIUM 6.5 CVE-2024-5919 A blind XML External Entities (XXE) injection vulnerability in the Palo Alto Networks PAN-OS software enables an authenticated attacker to exfiltrate… Pan Os 10.1.10 / 10.2.5+ Fix from $1,6002024-11-14 HIGH 7.5 CVE-2024-2550 A null pointer dereference vulnerability in the GlobalProtect gateway in Palo Alto Networks PAN-OS software enables an unauthenticated attacker to st… Pan Os 10.2.7 / 11.0.6+ Fix from $1,9502024-11-14 HIGH 7.5 CVE-2024-2551 A null pointer dereference vulnerability in Palo Alto Networks PAN-OS software enables an unauthenticated attacker to stop a core system service on t… Pan Os 10.1.14 / 10.2.4+ Fix from $1,9502024-11-14 MEDIUM 6.0 CVE-2024-2552 A command injection vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to bypass system restrictions in the m… Pan Os 10.2.7 / 11.0.6+ Fix from $1,6002024-11-14 HIGH 7.8 CVE-2024-9473 A privilege escalation vulnerability in the Palo Alto Networks GlobalProtect app on Windows allows a locally authenticated non-administrative Windows… Globalprotect 6.2.5+ Fix from $1,9502024-10-09 CRITICAL 9.1 CVE-2024-9465 KEVEPSS 100% An SQL injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to reveal Expedition database contents, such as pa… Expedition 1.2.96+ Fix from $2,3002024-10-09 HIGH 7.5 CVE-2024-9468 A memory corruption vulnerability in Palo Alto Networks PAN-OS software allows an unauthenticated attacker to crash PAN-OS due to a crafted packet th… Pan Os 10.2.4 / 10.2.7+ Fix from $1,9502024-10-09 MEDIUM 6.5 CVE-2024-9464EPSS 82% An OS command injection vulnerability in Palo Alto Networks Expedition allows an authenticated attacker to run arbitrary OS commands as root in Exped… Expedition 1.2.96+ Fix from $1,6002024-10-09 MEDIUM 6.5 CVE-2024-9466EPSS 13% A cleartext storage of sensitive information vulnerability in Palo Alto Networks Expedition allows an authenticated attacker to reveal firewall usern… Expedition 1.2.96+ Fix from $1,6002024-10-09 MEDIUM 6.1 CVE-2024-9467 A reflected XSS vulnerability in Palo Alto Networks Expedition enables execution of malicious JavaScript in the context of an authenticated Expeditio… Expedition 1.2.96+ Fix from $1,6002024-10-09 MEDIUM 5.5 CVE-2024-9469 A problem with a detection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices enables a user with Windows non-administrative pri… Cortex Xdr Agent 7.9.102+ Fix from $1,6002024-10-09 HIGH 7.5 CVE-2024-9463 KEVEPSS 98% An OS command injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to run arbitrary OS commands as root in Exp… Expedition 1.2.96+ Fix from $1,9502024-10-09 HIGH 7.2 CVE-2024-8686 A command injection vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to bypass system restrictions and run … Pan Os after 11.2.2 Fix from $1,9502024-09-11 HIGH 7.1 CVE-2024-8687 An information exposure vulnerability exists in Palo Alto Networks PAN-OS software that enables a GlobalProtect end user to learn both the configured… Pan Os 5.1.12 / 5.2.13+ Fix from $1,9502024-09-11 HIGH 7.1 CVE-2024-8691 A vulnerability in the GlobalProtect portal in Palo Alto Networks PAN-OS software enables a malicious authenticated GlobalProtect user to impersonate… Pan Os 9.1.17 / 10.1.11+ Fix from $1,9502024-09-11 CRITICAL 9.8 CVE-2024-5914 A command injection issue in Palo Alto Networks Cortex XSOAR CommonScripts Pack allows an unauthenticated attacker to execute arbitrary commands with… Cortex Xsoar Commonscripts 1.12.33+ Fix from $2,3002024-08-14