Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
palo alto networks vulnerabilities and exploits
(subscribe to this query)
801
VMScore
CVE-2019-15014
A command injection vulnerability exists in the Zingbox Inspector versions 1.286 and previous versions, that allows for an authenticated user to execute arbitrary system commands in the CLI.
Zingbox Inspector
578
VMScore
CVE-2019-15016
An SQL injection vulnerability exists in the management interface of Zingbox Inspector versions 1.288 and previous versions, that allows for unsanitized data provided by an authenticated user to be passed from the web UI into the database.
Zingbox Inspector
445
VMScore
CVE-2019-15018
A security vulnerability exists in the Zingbox Inspector versions 1.280 and previous versions, where authentication is not required when binding the Inspector instance to a different customer tenant.
Zingbox Inspector
445
VMScore
CVE-2019-15021
A security vulnerability exists in the Zingbox Inspector versions 1.294 and previous versions, that can allow an malicious user to easily identify instances of Zingbox Inspectors in a local area network.
Zingbox Inspector
NA
CVE-2024-0009
An improper verification vulnerability in the GlobalProtect gateway feature of Palo Alto Networks PAN-OS software enables a malicious user with stolen credentials to establish a VPN connection from an unauthorized IP address.
NA
CVE-2024-0010
A reflected cross-site scripting (XSS) vulnerability in the GlobalProtect portal feature of Palo Alto Networks PAN-OS software enables execution of malicious JavaScript (in the context of a user’s browser) if a user clicks on a malicious link, allowing phishing attacks that...
NA
CVE-2024-0011
A reflected cross-site scripting (XSS) vulnerability in the Captive Portal feature of Palo Alto Networks PAN-OS software enables execution of malicious JavaScript (in the context of an authenticated Captive Portal user’s browser) if a user clicks on a malicious link, allowi...
312
VMScore
CVE-2019-1567
The Expedition Migration tool 1.1.6 and previous versions may allow an authenticated malicious user to run arbitrary JavaScript or HTML in the User Mapping Settings.
Paloaltonetworks Expedition Migration Tool
187
VMScore
CVE-2019-15704
A clear text storage of sensitive information vulnerability in FortiClient for Mac may allow a local malicious user to read sensitive information logged in the console window when the user connects to an SSL VPN Gateway.
Fortinet Forticlient
Fortinet Forticlient 6.2.0
445
VMScore
CVE-2019-1572
PAN-OS 9.0.0 may allow an unauthenticated remote user to access php files.
Paloaltonetworks Pan-os 9.0.0
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-35229
privilege escalation
local users
CVE-2024-5405
CVE-2024-27842
CVE-2024-5274
CVE-2024-5378
CVE-2024-34152
hard-coded
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
5
6
7
8
9
10
NEXT »