imPC@ndo IT

Palo Alto vulnerabilities

371 CVE

CVE-2024-8690
Medium 4.4

A problem with a detection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices enables a user with Windows administrator privileges to disable the agent. This issue may be leveraged by malware to disable the Cortex XDR agent and then to per…

paloaltonetworks cortex_xdr_agent
0.00EPSS
CVE-2023-0009
High 7.8

A local privilege escalation (PE) vulnerability in the Palo Alto Networks GlobalProtect app on Windows enables a local user to execute programs with elevated privileges.

paloaltonetworks globalprotect
0.00EPSS
CVE-2026-0256
Medium 4.8

A stored cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS® software enables a malicious authenticated administrator to store a JavaScript payload using the web interface. This issue is applicable to PAN-OS software on PA-Series and VM-Se…

paloaltonetworks pan-os · siemens ruggedcom_ape1808_firmware
0.00EPSS
CVE-2024-0009
Medium 6.3

An improper verification vulnerability in the GlobalProtect gateway feature of Palo Alto Networks PAN-OS software enables a malicious user with stolen credentials to establish a VPN connection from an unauthorized IP address.

paloaltonetworks pan-os
0.00EPSS
CVE-2026-0282
Medium 6.5

A file deletion vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to the management web interface to delete files from a temporary directory. The security risk posed by this issue is minimized by rest…

paloaltonetworks pan-os
0.00EPSS
CVE-2026-0233
High 8.8

A certificate validation vulnerability in Palo Alto Networks Autonomous Digital Experience Manager on Windows allows an unauthenticated attacker with adjacent network access to execute arbitrary code with NT AUTHORITY\SYSTEM privileges.

paloaltonetworks autonomous_digital_experience_manager
0.00EPSS
CVE-2023-3282
Medium 6.4

A local privilege escalation (PE) vulnerability in the Palo Alto Networks Cortex XSOAR engine software running on a Linux operating system enables a local attacker to execute programs with elevated privileges if the attacker has shell access to the engine.

paloaltonetworks cortex_xsoar
0.00EPSS
CVE-2026-0243
Medium 6.5

A denial of service (DoS) vulnerability in Palo Alto Networks Prisma SD-WAN ION devices enables an unauthenticated attacker in a network adjacent to a Prisma SD-WAN ION device to cause a system disruption by sending a specially crafted IPv6 packet.

paloaltonetworks prisma_sd-wan
0.00EPSS
CVE-2026-0239
Medium 6.5

An information disclosure vulnerability in the Chronosphere Chronocollector enables an unauthenticated attacker with network access to the collector service to retrieve sensitive information.

paloaltonetworks chronosphere_collector
0.00EPSS
CVE-2024-5918
Medium 4.3

An improper certificate validation vulnerability in Palo Alto Networks PAN-OS software enables an authorized user with a specially crafted client certificate to connect to an impacted GlobalProtect portal or GlobalProtect gateway as a different legitimate user…

paloaltonetworks pan-os
0.00EPSS
CVE-2024-3387
Medium 5.3

A weak (low bit strength) device certificate in Palo Alto Networks Panorama software enables an attacker to perform a meddler-in-the-middle (MitM) attack to capture encrypted traffic between the Panorama management server and the firewalls it manages. With suf…

paloaltonetworks pan-os
0.00EPSS
CVE-2026-0281
High 7.1

An information disclosure vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to the management web interface to obtain web session tokens. This requires a legitimate user to first click on a malicious l…

paloaltonetworks pan-os
0.00EPSS
CVE-2022-0019
Medium 4.7

An insufficiently protected credentials vulnerability exists in the Palo Alto Networks GlobalProtect app on Linux that exposes the hashed credentials of GlobalProtect users that saved their password during previous GlobalProtect app sessions to other local use…

paloaltonetworks globalprotect
0.00EPSS
CVE-2021-3034
Medium 5.1

An information exposure through log file vulnerability exists in Cortex XSOAR software where the secrets configured for the SAML single sign-on (SSO) integration can be logged to the '/var/log/demisto/' server logs when testing the integration during setup. Th…

paloaltonetworks cortex_xsoar
0.00EPSS
CVE-2026-45173
Medium 6.5

Idira Identity Browser Extension (Chrome, Firefox, and Edge builds) versions prior to 26.8.1 exhibit an origin validation flaw within its internal web-page verification routines. If an authenticated user navigates to a specially crafted webpage, this interacti…

paloaltonetworks idira_identity_browser_extension
0.00EPSS
CVE-2026-0236
High 7.8

A code injection vulnerability in Palo Alto Networks Prisma® Browser on macOS fails to properly restrict access to its AppleScript interface allowing a locally authenticated non-admin user to leverage this exposed Apple Event handler to send unauthorized comma…

paloaltonetworks prisma_browser
0.00EPSS
CVE-2026-0251
High 7.8

Multiple local privilege escalation vulnerabilities in the Palo Alto Networks GlobalProtect™ app allow a local user to escalate their privileges to NT AUTHORITY\SYSTEM on Windows and root on macOS and Linux. This enables a non-administrative user to execute ar…

paloaltonetworks globalprotect
0.00EPSS
CVE-2024-2431
Medium 5.5

An issue in the Palo Alto Networks GlobalProtect app enables a non-privileged user to disable the GlobalProtect app in configurations that allow a user to disable GlobalProtect with a passcode.

paloaltonetworks globalprotect
0.00EPSS
CVE-2026-0247
High 7.8

Multiple authorization bypass vulnerabilities in the Endpoint DLP component of Prisma Access Agent® allow a local attacker to bypass authentication controls and execute privileged operations.

paloaltonetworks prisma_access_agent
0.00EPSS
CVE-2025-0120
High 7.0

A vulnerability with a privilege management mechanism in the Palo Alto Networks GlobalProtect™ app on Windows devices allows a locally authenticated non-administrative Windows user to escalate their privileges to NT AUTHORITY\SYSTEM. However, execution require…

paloaltonetworks globalprotect
0.00EPSS
CVE-2026-0237
High 7.8

An improper protection of alternate path vulnerability in Palo Alto Networks Prisma® Browser on macOS fails to properly restrict access to an internal automation bridge. This allows a locally authenticated non-admin user to leverage an exposed communication ch…

paloaltonetworks prisma_browser
0.00EPSS
CVE-2026-0246
High 7.8

A vulnerability with a privilege management mechanism in the Palo Alto Networks Prisma Access Agent® enables a locally authenticated non-administrative user to escalate their privileges to root on macOS and Linux or NT AUTHORITY\SYSTEM on Windows. This allows …

paloaltonetworks prisma_access_agent
0.00EPSS
CVE-2026-0232
Medium 4.4

A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on Windows allows a local Windows administrator to disable the agent. This issue may be leveraged by malware to perform malicious activity without detection.

paloaltonetworks cortex_xdr_agent
0.00EPSS
CVE-2026-0245
Medium 5.5

Multiple information disclosure vulnerabilities in Prisma Access Agent® allow a local user to access sensitive configuration data and credentials. The Prisma Access Agent on Linux, ChromeOS, Android, and iOS are not affected.

paloaltonetworks prisma_access_agent
0.00EPSS
CVE-2025-4227
Low 3.5

An improper access control vulnerability in the Endpoint Traffic Policy Enforcement https://docs.paloaltonetworks.com/globalprotect/6-0/globalprotect-app-new-features/new-features-released-in-gp-app/endpoint-traffic-policy-enforcement feature of the Palo Alt…

paloaltonetworks globalprotect
0.00EPSS