Category: Palo Alto Networks
-
Palo Alto Networks PAN-OS security vulnerability (CVE‑2025‑0108)
CVE‑2025‑0108 is an authentication bypass vulnerability found in Palo Alto Networks’ PAN‑OS software. This vulnerability allows an unauthenticated attacker with network access to the management web interface to bypass standard authentication and invoke specific PHP scripts. While the flaw doesn’t directly lead to remote code execution, it can compromise the confidentiality and integrity of the…
-
Palo Alto Networks PAN-OS security vulnerability (CVE-2024-3400)
CVE-2024-3400 is a critical command injection vulnerability in PAN-OS of Palo Alto Networks, specifically affecting devices with the GlobalProtect feature. When GlobalProtect is configured as a gateway or portal, an attacker could exploit this vulnerability remotely, enabling unauthorized command execution with root privileges on the device.Palo Alto Networks has rated this vulnerability at the highest…