Vulnerability index

Browse CVEs

29 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Cortex Xsiam Commvaultsecurityiq Marketplace CRITICAL 9.1
CVE-2026-0274

An improper validation of credentials vulnerability in the CommvaultSecurityIQ integration for Cortex XSOAR and Cortex XSIAM allows an unauthenticate…

Mitigation only
Fix from $2,300 2026-06-10
Pan Os CRITICAL 9.8
CVE-2026-0300 KEVEPSS 32%

A buffer overflow vulnerability in the User-ID™ Authentication Portal (aka Captive Portal) service of Palo Alto Networks PAN-OS software allows an un…

Mitigation only
Fix from $2,300 2026-05-06
Pan Os CRITICAL 9.8
CVE-2024-0012 KEVEPSS 100%

An authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web interfac…

Mitigation only
Fix from $2,300 2024-11-18
Pan Os CRITICAL 10.0
CVE-2024-3400 KEVEPSS 100%

A command injection as a result of arbitrary file creation vulnerability in the GlobalProtect feature of Palo Alto Networks PAN-OS software for speci…

Mitigation only
Fix from $2,300 2024-04-12
Cortex Xsoar MEDIUM 6.7
CVE-2022-0031

A local privilege escalation (PE) vulnerability in the Palo Alto Networks Cortex XSOAR engine software running on a Linux operating system allows a l…

Mitigation only
Fix from $1,600 2022-11-09
Cortex Xdr Agent MEDIUM 6.7
CVE-2022-0026

A local privilege escalation (PE) vulnerability exists in Palo Alto Networks Cortex XDR agent software on Windows that enables an authenticated local…

Mitigation only
Fix from $1,600 2022-05-11
Cortex Xsoar MEDIUM 5.4
CVE-2022-0020

A stored cross-site scripting (XSS) vulnerability in Palo Alto Network Cortex XSOAR web interface enables an authenticated network-based attacker to …

No fix yet
Fix from $1,600 2022-02-10
Cortex Xsoar HIGH 8.1
CVE-2021-3051

An improper verification of cryptographic signature vulnerability exists in Cortex XSOAR SAML authentication that enables an unauthenticated network-…

Mitigation only
Fix from $1,950 2021-09-08
Cortex Xdr Agent HIGH 7.8
CVE-2021-3042

A local privilege escalation (PE) vulnerability exists in the Palo Alto Networks Cortex XDR agent on Windows platforms that enables an authenticated …

Mitigation only
Fix from $1,950 2021-07-15
Cortex Xsoar CRITICAL 9.8
CVE-2021-3044

An improper authorization vulnerability in Palo Alto Networks Cortex XSOAR enables a remote unauthenticated attacker with network access to the Corte…

Mitigation only
Fix from $2,300 2021-06-22
Cortex Xsoar MEDIUM 5.1
CVE-2021-3034

An information exposure through log file vulnerability exists in Cortex XSOAR software where the secrets configured for the SAML single sign-on (SSO)…

Mitigation only
Fix from $1,600 2021-03-10
Prisma Cloud CRITICAL 9.8
CVE-2021-3033

An improper verification of cryptographic signature vulnerability exists in the Palo Alto Networks Prisma Cloud Compute console. This vulnerability e…

Mitigation only
Fix from $2,300 2021-02-10
Secdo HIGH 7.8
CVE-2020-1984

Secdo tries to execute a script at a hardcoded path if present, which allows a local authenticated user with 'create folders or append data' access t…

Mitigation only
Fix from $1,950 2020-04-08
Secdo HIGH 7.8
CVE-2020-1985

Incorrect Default Permissions on C:\Programdata\Secdo\Logs folder in Secdo allows local authenticated users to overwrite system files and gain escala…

Mitigation only
Fix from $1,950 2020-04-08
Secdo MEDIUM 5.5
CVE-2020-1986

Improper input validation vulnerability in Secdo allows an authenticated local user with 'create folders or append data' access to the root of the OS…

Mitigation only
Fix from $1,600 2020-04-08
Demisto MEDIUM 6.1
CVE-2019-1568

Cross-site scripting (XSS) vulnerability in Palo Alto Networks Demisto 4.5 build 40249 may allow an unauthenticated attacker to run arbitrary JavaScr…

Mitigation only
Fix from $1,600 2019-05-09
Pan Os HIGH 7.5
CVE-2019-1572

PAN-OS 9.0.0 may allow an unauthenticated remote user to access php files.

Mitigation only
Fix from $1,950 2019-03-26
Expedition CRITICAL 9.8
CVE-2018-10143EPSS 25%

The Palo Alto Networks Expedition Migration tool 1.0.107 and earlier may allow an unauthenticated attacker with remote access to run system level com…

No fix yet
Fix from $2,300 2018-12-12
Expedition HIGH 7.5
CVE-2018-10142

The Expedition Migration tool 1.0.106 and earlier may allow an unauthenticated attacker to enumerate files on the operating system.

Mitigation only
Fix from $1,950 2018-11-27
Pan Os MEDIUM 6.1
CVE-2018-7636

The URL filtering "continue page" hosted by PAN-OS 8.0.10 and earlier may allow an attacker to inject arbitrary JavaScript or HTML via specially craf…

Mitigation only
Fix from $1,600 2018-07-03
Pan Os MEDIUM 5.9
CVE-2017-17841

Palo Alto Networks PAN-OS 6.1, 7.1, and 8.0.x before 8.0.7, when an interface implements SSL decryption with RSA enabled or hosts a GlobalProtect por…

Mitigation only
Fix from $1,600 2018-01-10
Terminal Services Agent MEDIUM 5.3
CVE-2017-6356

Palo Alto Networks Terminal Services (aka TS) Agent 6.0, 7.0, and 8.0 before 8.0.1 uses weak permissions for unspecified resources, which allows atta…

Mitigation only
Fix from $1,600 2017-03-20
Pan Os MEDIUM 5.4
CVE-2017-5584

Cross-site scripting (XSS) vulnerability in the Management Web Interface in Palo Alto Networks PAN-OS 5.1, 6.x before 6.1.16, 7.0.x before 7.0.13, an…

Mitigation only
Fix from $1,600 2017-03-15
Pan Os MEDIUM 5.4
CVE-2016-2219

Cross-site scripting (XSS) vulnerability in the management interface in Palo Alto Networks PAN-OS 7.x before 7.0.8 allows remote authenticated users …

Mitigation only
Fix from $1,600 2016-07-12
Pan Os HIGH 9.0
CVE-2012-6595

The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.2 allows remote authenticated admin…

Mitigation only
Fix from $1,950 2013-08-31
Pan Os HIGH 9.0
CVE-2012-6598

The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 allows remote authenticated users to execute arbitrary c…

Mitigation only
Fix from $1,950 2013-08-31
Pan Os HIGH 9.0
CVE-2012-6599

The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 and 4.1.x before 4.1.1 allows remote authenticated users…

Mitigation only
Fix from $1,950 2013-08-31
Pan Os HIGH 9.0
CVE-2012-6600

The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.2 allows remote authenticated users…

Mitigation only
Fix from $1,950 2013-08-31
Pan Os MEDIUM 5.0
CVE-2012-6596

Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.3 stores cleartext LDAP bind passwords in authd.log, which allows context-dependent…

Mitigation only
Fix from $1,600 2013-08-31