Paloaltonetworks
Paloaltonetworks Pan-os: vulnerabilidades y CVE
Paloaltonetworks Pan-os tiene 257 vulnerabilidades publicadas, 34 de ellas en los últimos 12 meses. 21 son críticas y 14 figuran en el catálogo de explotación activa de CISA.
CVE257
Últimos 12 meses34
Críticas21
Explotadas activamente14
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
🔴 Explotadas activamente (CISA KEV)
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-0257 | Alta (7.8) | 97% | ⚠ Explotación activa | 13 may 2026 | Authentication bypass vulnerabilities in the GlobalProtect portal and gateway of Palo Alto Networks PAN-OS® software allows the attacker to bypass security restrictions and establish an unauthorized VPN connection.… |
| CVE-2026-0300 | Crítica (9.3) | 32% | ⚠ Explotación activa | 6 may 2026 | A buffer overflow vulnerability in the User-ID™ Authentication Portal (aka Captive Portal) service of Palo Alto Networks PAN-OS software allows an unauthenticated attacker to execute arbitrary code with root privileges… |
| CVE-2018-14634 | Alta (7.8) | 15% | ⚠ Explotación activa | 25 sept 2018 | An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileged local user with access to SUID (or otherwise privileged) binary could use this flaw to escalate their privileges on… |
| CVE-2025-0111 | Alta (7.1) | 2.0% | ⚠ Explotación activa | 12 feb 2025 | An authenticated file read vulnerability in the Palo Alto Networks PAN-OS software enables an authenticated attacker with network access to the management web interface to read files on the PAN-OS filesystem that are… |
| CVE-2025-0108 | Alta (8.8) | 98% | ⚠ Explotación activa | 12 feb 2025 | An authentication bypass in the Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web interface to bypass the authentication otherwise required by the PAN-OS… |
| CVE-2024-3393 | Alta (8.7) | 29% | ⚠ Explotación activa | 27 dic 2024 | A Denial of Service vulnerability in the DNS Security feature of Palo Alto Networks PAN-OS software allows an unauthenticated attacker to send a malicious packet through the data plane of the firewall that reboots the… |
| CVE-2024-0012 | Crítica (9.3) | 100% | ⚠ Explotación activa | 18 nov 2024 | An authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web interface to gain PAN-OS administrator privileges to perform administrative… |
| CVE-2024-9474 | Media (6.9) | 95% | ⚠ Explotación activa | 18 nov 2024 | A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS administrator with access to the management web interface to perform actions on the firewall with root privileges. Cloud NGFW… |
| CVE-2024-3400 | Crítica (10) | 100% | ⚠ Explotación activa | 12 abr 2024 | A command injection as a result of arbitrary file creation vulnerability in the GlobalProtect feature of Palo Alto Networks PAN-OS software for specific PAN-OS versions and distinct feature configurations may enable an… |
| CVE-2022-0028 | Alta (8.6) | 2.5% | ⚠ Explotación activa | 10 ago 2022 | A PAN-OS URL filtering policy misconfiguration could allow a network-based attacker to conduct reflected and amplified TCP denial-of-service (RDoS) attacks. The DoS attack would appear to originate from a Palo Alto… |
| CVE-2017-15944 | Crítica (9.8) | 98% | ⚠ Explotación activa | 11 dic 2017 | Palo Alto Networks PAN-OS before 6.1.19, 7.0.x before 7.0.19, 7.1.x before 7.1.14, and 8.0.x before 8.0.6 allows remote attackers to execute arbitrary code via vectors involving the management interface. |
| CVE-2020-2021 | Crítica (10) | 4.4% | ⚠ Explotación activa | 29 jun 2020 | When Security Assertion Markup Language (SAML) authentication is enabled and the 'Validate Identity Provider Certificate' option is disabled (unchecked), improper verification of signatures in PAN-OS SAML authentication… |
| CVE-2016-5195 | Alta (7) | 84% | ⚠ Explotación activa | 10 nov 2016 | Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect handling of a copy-on-write (COW) feature to write to a read-only memory mapping,… |
| CVE-2019-1579 | Alta (8.1) | 46% | ⚠ Explotación activa | 19 jul 2019 | Remote Code Execution in PAN-OS 7.1.18 and earlier, PAN-OS 8.0.11-h1 and earlier, and PAN-OS 8.1.2 and earlier with GlobalProtect Portal or GlobalProtect Gateway Interface enabled may allow an unauthenticated remote… |
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-0310 | Alta (7.2) | 0.37% | — | 10 sept 2026 | A buffer overflow vulnerability in the XML processing functionality of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to the management web or dataplane interface to cause a… |
| CVE-2026-0309 | Media (4) | 0.45% | — | 10 sept 2026 | A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user. To be able to exploit this issue,… |
| CVE-2026-0308 | Baja (1.1) | 0.27% | — | 10 sept 2026 | A stored cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS® software enables a malicious authenticated administrator to store or execute a JavaScript payload using the web interface. This issue is… |
| CVE-2026-0301 | Baja (1.7) | 0.32% | — | 13 ago 2026 | An information disclosure vulnerability in the URL Filtering feature of Palo Alto Networks PAN-OS® software enables an unauthenticated user with network access to obtain sensitive information. Panorama is not impacted… |
| CVE-2026-0287 | Media (6.6) | 0.62% | — | 9 jul 2026 | Multiple denial of service vulnerabilities in Palo Alto Networks PAN-OS® software allow an unauthenticated attacker with network access to cause a denial of service (DoS) condition by sending specially crafted network… |
| CVE-2026-0286 | Media (6) | 1.7% | — | 9 jul 2026 | A command injection vulnerability in the management plane of Palo Alto Networks PAN-OS® software enables an authenticated administrator to execute arbitrary OS commands as root. The security risk posed by this issue is… |
| CVE-2026-0285 | Media (4.7) | 0.43% | — | 9 jul 2026 | A server-side request forgery (SSRF) vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator with network access to the management web interface to make unauthorized requests from the… |
| CVE-2026-0284 | Media (4.7) | 0.46% | — | 9 jul 2026 | An XML injection vulnerability in the Large Scale VPN (LSVPN) functionality of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to inject malicious XML content, potentially… |
| CVE-2026-0283 | Media (4.5) | 0.38% | — | 9 jul 2026 | An authentication bypass vulnerability in Large Scale VPN ( LSVPN) functionality of Palo Alto Networks PAN-OS software allows an attacker with network access to bypass security restrictions and establish an unauthorized… |
| CVE-2026-0282 | Baja (2.7) | 0.29% | — | 9 jul 2026 | A file deletion vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to the management web interface to delete files from a temporary directory. The security risk… |
| CVE-2026-0281 | Baja (2.1) | 0.28% | — | 9 jul 2026 | An information disclosure vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to the management web interface to obtain web session tokens. This requires a… |
| CVE-2026-0280 | Baja (1.7) | 0.34% | — | 9 jul 2026 | An IPv6 packet processing vulnerability in the dataplane of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker to bypass firewall security policy enforcement, allowing network traffic that should be… |
| CVE-2026-0279 | Baja (1.3) | 0.75% | — | 9 jul 2026 | Multiple cross site scripting vulnerabilities in the User-ID™ Authentication Portal (aka Captive Portal) service, GlobalProtect™ gateway/portal features and Clientless VPN of Palo Alto Networks PAN-OS® software enables… |
| CVE-2026-0288 | Alta (7.2) | 0.83% | — | 8 jul 2026 | Multiple buffer overflow vulnerabilities in the User-ID Terminal Server Agent (TSA) component of Palo Alto Networks PAN-OS software allow an unauthenticated attacker with network access to cause a denial of service… |
| CVE-2026-0273 | Media (6.1) | 1.3% | — | 10 jun 2026 | A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user. To be able to exploit this issue,… |
| CVE-2026-0272 | Media (6) | 0.26% | — | 10 jun 2026 | A privilege escalation vulnerability in Palo Alto Networks PAN-OS® software allows an authenticated administrator with access to the Command Line Interface (CLI) to perform actions on the device with root privileges.… |
| CVE-2026-0269 | Media (4.6) | 0.22% | — | 10 jun 2026 | A memory corruption vulnerability in the processing of tunnel traffic in Palo Alto Networks PAN-OS® software allows an authenticated user to initiate system reboots using a maliciously crafted packet. Repeated attempts… |
| CVE-2026-0266 | Baja (1.1) | 0.14% | — | 10 jun 2026 | A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS® software enables a malicious authenticated administrator to store a JavaScript payload using the web interface. This issue is applicable to PAN-OS… |
| CVE-2026-0262 | Media (6.6) | 0.36% | — | 13 may 2026 | Multiple denial of service vulnerabilities in Palo Alto Networks PAN-OS® software allow an unauthenticated attacker with network access to cause a denial of service (DoS) condition by sending specially crafted network… |
| CVE-2026-0261 | Media (6.1) | 1.4% | — | 13 may 2026 | Multiple command injection vulnerabilities in Palo Alto Networks PAN-OS® software enable an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user. To be able to exploit this… |
| CVE-2026-0259 | Media (5) | 0.34% | — | 13 may 2026 | An arbitrary File Read and Delete Vulnerability in Palo Alto Networks WildFire® WF-500 and WF-500-B appliances enables users to read sensitive information and delete arbitrary files. This vulnerability affects WF-500… |
| CVE-2026-0258 | Media (4.8) | 0.33% | — | 13 may 2026 | A server-side request forgery (SSRF) vulnerability in the IKEv2 implementation of Palo Alto Networks PAN-OS® software allows an unauthenticated attacker to cause the firewall to send network requests to unintended… |
| CVE-2026-0257 | Alta (7.8) | 97% | ⚠ Explotación activa | 13 may 2026 | Authentication bypass vulnerabilities in the GlobalProtect portal and gateway of Palo Alto Networks PAN-OS® software allows the attacker to bypass security restrictions and establish an unauthorized VPN connection.… |
| CVE-2026-0256 | Media (4.4) | 0.18% | — | 13 may 2026 | A stored cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS® software enables a malicious authenticated administrator to store a JavaScript payload using the web interface. This issue is applicable to… |
| CVE-2026-0265 | Alta (7.2) | 1.1% | — | 13 may 2026 | An authentication bypass vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to bypass authentication controls when Cloud Authentication Service (CAS) is enabled.… |
| CVE-2026-0264 | Alta (7.2) | 0.47% | — | 13 may 2026 | A buffer overflow vulnerability in the DNS proxy and DNS Server features of Palo Alto Networks PAN-OS® Software allows an unauthenticated attacker with network access to cause a denial of service (DoS) condition (all… |
| CVE-2026-0263 | Alta (7.2) | 0.37% | — | 13 may 2026 | A buffer overflow vulnerability in the IKEv2 processing of Palo Alto Networks PAN-OS® software allows an unauthenticated network-based attacker to execute arbitrary code with elevated privileges on the firewall, or… |
| CVE-2026-0300 | Crítica (9.3) | 32% | ⚠ Explotación activa | 6 may 2026 | A buffer overflow vulnerability in the User-ID™ Authentication Portal (aka Captive Portal) service of Palo Alto Networks PAN-OS software allows an unauthenticated attacker to execute arbitrary code with root privileges… |
| CVE-2026-0229 | Media (6.6) | 0.55% | — | 11 feb 2026 | A denial-of-service (DoS) vulnerability in the Advanced DNS Security (ADNS) feature of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker to initiate system reboots using a maliciously crafted… |
| CVE-2026-0228 | Baja (1.3) | 0.19% | — | 11 feb 2026 | An improper certificate validation vulnerability in PAN-OS allows users to connect Terminal Server Agents on Windows to PAN-OS using expired certificates even if the PAN-OS configuration would not normally permit them… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.