Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
palo alto networks vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2023-0010
A reflected cross-site scripting (XSS) vulnerability in the Captive Portal feature of Palo Alto Networks PAN-OS software can allow a JavaScript payload to be executed in the context of an authenticated Captive Portal user’s browser when they click on a specifically crafted ...
Paloaltonetworks Pan-os
NA
CVE-2023-3280
A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices allows a local user to disable the agent.
Paloaltonetworks Cortex Xdr Agent
Paloaltonetworks Cortex Xdr Agent 7.5.102
NA
CVE-2023-3281
CVE-2023-3281 Cortex XSOAR: Cleartext Exposure of Client Certificate Key in Kafka v3 Integration
383
VMScore
CVE-2018-10139
The PAN-OS response for GlobalProtect Gateway in Palo Alto Networks PAN-OS 6.1.21 and previous versions, PAN-OS 7.1.18 and previous versions, PAN-OS 8.0.11 and previous versions may allow an unauthenticated malicious user to inject arbitrary JavaScript or HTML. PAN-OS 8.1 is NOT ...
Paloaltonetworks Pan-os
356
VMScore
CVE-2018-10140
The PAN-OS Management Web Interface in Palo Alto Networks PAN-OS 8.1.2 and previous versions may allow an authenticated user to shut down all management sessions, resulting in all logged in users to be redirected to the login page. PAN-OS 6.1, PAN-OS 7.1 and PAN-OS 8.0 are NOT af...
Paloaltonetworks Pan-os
384
VMScore
CVE-2018-10141
GlobalProtect Portal Login page in Palo Alto Networks PAN-OS prior to 8.1.4 allows an unauthenticated malicious user to inject arbitrary JavaScript or HTML.
Paloaltonetworks Pan-os
445
VMScore
CVE-2018-10142
The Expedition Migration tool 1.0.106 and previous versions may allow an unauthenticated malicious user to enumerate files on the operating system.
Paloaltonetworks Expedition 1.0.106
NA
CVE-2019-110915
PAN-SA-2019-0012 Information about Recent Intel Side Channel Vulnerabilities
NA
CVE-2022-45198
Pillow prior to 9.2.0 performs Improper Handling of Highly Compressed GIF Data (Data Amplification).
Python Pillow
383
VMScore
CVE-2017-17841
Palo Alto Networks PAN-OS 6.1, 7.1, and 8.0.x prior to 8.0.7, when an interface implements SSL decryption with RSA enabled or hosts a GlobalProtect portal or gateway, might allow remote malicious users to decrypt TLS ciphertext data by leveraging a Bleichenbacher RSA padding orac...
Paloaltonetworks Pan-os 6.1.0
Paloaltonetworks Pan-os 7.1.4
Paloaltonetworks Pan-os 7.1.4-h2
Paloaltonetworks Pan-os 7.1.5
Paloaltonetworks Pan-os 7.1.6
Paloaltonetworks Pan-os 7.1.1
Paloaltonetworks Pan-os 7.1.3
Paloaltonetworks Pan-os 7.1.7
Paloaltonetworks Pan-os 7.1.9
Paloaltonetworks Pan-os 7.1.11
Paloaltonetworks Pan-os 7.1.12
Paloaltonetworks Pan-os 7.1.13
Paloaltonetworks Pan-os 7.1.14
Paloaltonetworks Pan-os 7.1.0
Paloaltonetworks Pan-os 7.1.2
Paloaltonetworks Pan-os 7.1.8
Paloaltonetworks Pan-os 7.1.10
Paloaltonetworks Pan-os 8.0.4
Paloaltonetworks Pan-os 8.0.5
Paloaltonetworks Pan-os 8.0.6
Paloaltonetworks Pan-os 8.0.0
Paloaltonetworks Pan-os 8.0.2
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33228
CVE-2024-20361
log injection
bypass
CVE-2024-4985
CVE-2024-35223
CVE-2024-29849
CVE-2024-31893
IMAP
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
3
4
5
6
7
8
9
10
NEXT »