Vulnerability index

Browse CVEs

16 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Pan Os CRITICAL 9.1
CVE-2026-0257 KEVEPSS 94%

Authentication bypass vulnerabilities in the GlobalProtect portal and gateway of Palo Alto Networks PAN-OS® software allows the attacker to bypass se…

Fix: 10.2.7+
Fix from $2,300 2026-05-13
Pan Os CRITICAL 9.8
CVE-2026-0300 KEVEPSS 32%

A buffer overflow vulnerability in the User-ID™ Authentication Portal (aka Captive Portal) service of Palo Alto Networks PAN-OS software allows an un…

Mitigation only
Fix from $2,300 2026-05-06
Pan Os CRITICAL 9.1
CVE-2025-0108 KEVEPSS 98%

An authentication bypass in the Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web inte…

Fix: 10.1.14 / 10.2.7+
Fix from $2,300 2025-02-12
Pan Os MEDIUM 6.5
CVE-2025-0111 KEV

An authenticated file read vulnerability in the Palo Alto Networks PAN-OS software enables an authenticated attacker with network access to the manag…

Fix: 10.1.14 / 10.2.7+
Fix from $1,600 2025-02-12
Pan Os HIGH 7.5
CVE-2024-3393 KEVEPSS 29%

A Denial of Service vulnerability in the DNS Security feature of Palo Alto Networks PAN-OS software allows an unauthenticated attacker to send a mali…

Fix: 11.2.3+
Fix from $1,950 2024-12-27
Pan Os HIGH 7.2
CVE-2024-9474 KEVEPSS 95%

A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS administrator with access to the management web interface …

Fix: 10.1.14 / 10.2.12+
Fix from $1,950 2024-11-18
Pan Os CRITICAL 9.8
CVE-2024-0012 KEVEPSS 100%

An authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web interfac…

Mitigation only
Fix from $2,300 2024-11-18
Expedition CRITICAL 9.1
CVE-2024-9465 KEVEPSS 100%

An SQL injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to reveal Expedition database contents, such as pa…

Fix: 1.2.96+
Fix from $2,300 2024-10-09
Expedition HIGH 7.5
CVE-2024-9463 KEVEPSS 98%

An OS command injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to run arbitrary OS commands as root in Exp…

Fix: 1.2.96+
Fix from $1,950 2024-10-09
Expedition CRITICAL 9.8
CVE-2024-5910 KEVEPSS 92%

Missing authentication for a critical function in Palo Alto Networks Expedition can lead to an Expedition admin account takeover for attackers with n…

Fix: 1.2.92+
Fix from $2,300 2024-07-10
Pan Os CRITICAL 10.0
CVE-2024-3400 KEVEPSS 100%

A command injection as a result of arbitrary file creation vulnerability in the GlobalProtect feature of Palo Alto Networks PAN-OS software for speci…

Mitigation only
Fix from $2,300 2024-04-12
Pan Os HIGH 8.6
CVE-2022-0028 KEV

A PAN-OS URL filtering policy misconfiguration could allow a network-based attacker to conduct reflected and amplified TCP denial-of-service (RDoS) a…

Fix: 8.1.23 / 9.0.16+
Fix from $1,950 2022-08-10
Pan Os CRITICAL 10.0
CVE-2020-2021 KEV

When Security Assertion Markup Language (SAML) authentication is enabled and the 'Validate Identity Provider Certificate' option is disabled (uncheck…

Fix: 8.1.15 / 9.0.9+
Fix from $2,300 2020-06-29
Pan Os HIGH 8.1
CVE-2019-1579 KEVEPSS 46%

Remote Code Execution in PAN-OS 7.1.18 and earlier, PAN-OS 8.0.11-h1 and earlier, and PAN-OS 8.1.2 and earlier with GlobalProtect Portal or GlobalPro…

Fix: 7.1.19 / 8.0.12+
Fix from $1,950 2019-07-19
Pan Os HIGH 7.8
CVE-2018-14634 KEVEPSS 15%

An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileged local user with access to SUID (or otherwise p…

Fix: 7.1.23 / 8.0.16+
Fix from $1,950 2018-09-25
Pan Os CRITICAL 9.8
CVE-2017-15944 KEVEPSS 98%

Palo Alto Networks PAN-OS before 6.1.19, 7.0.x before 7.0.19, 7.1.x before 7.1.14, and 8.0.x before 8.0.6 allows remote attackers to execute arbitrar…

Fix: 6.1.19 / 7.0.19+
Fix from $2,300 2017-12-11