Vulnerabilidades em Palo Alto Networks

351 resultados
Análise Vexday

Das 316 CVEs catalogadas para Palo Alto Networks, 13 estão confirmadas em exploração ativa no catálogo KEV da CISA, representando uma taxa 9,1 vezes acima da média geral do catálogo — sinal de que vulnerabilidades nesse vendor atraem exploração real com frequência desproporcional. A CVE mais crítica em atividade é a CVE-2024-3400, que atingiu EPSS máximo de 1,0, indicando probabilidade extremamente elevada de exploração observada ou iminente. O tipo de falha mais recorrente é CWE-78 (injeção de comandos no sistema operacional), uma classe de vulnerabilidade com alto potencial de impacto em appliances de segurança de perímetro. Com 17 CVEs críticas, 15 com PoC pública e 39 surgidas nos últimos 90 dias, equipes responsáveis por ambientes que utilizam produtos Palo Alto Networks devem priorizar ciclos curtos de patching e monitorar ativamente os indicadores de exploração.

CVE-2020-1998MEDIUMPAN-OS: Improper SAML SSO authorization of shared local usersEPSS 0.9%CVE-2024-3384HIGHPAN-OS: Firewall Denial of Service (DoS) via Malformed NTLM PacketsEPSS 0.9%CVE-2020-2033MEDIUMGlobalProtect App: Missing certificate validation vulnerability can disclose pre-logon authentication cookieEPSS 0.9%CVE-2019-1568Cross-site scripting (XSS) vulnerability in Palo Alto Networks Demisto 4.5 build 40249 may allow an unauthenticated attacker to run arbitrarEPSS 0.9%CVE-2021-3061MEDIUMPAN-OS: OS Command Injection Vulnerability in the Command Line Interface (CLI)EPSS 0.9%CVE-2021-3048MEDIUMPAN-OS: Invalid URLs in an External Dynamic List (EDL) can Lead to Firewall OutageEPSS 0.8%CVE-2020-2005HIGHPAN-OS: GlobalProtect Clientless VPN session hijackingEPSS 0.8%CVE-2026-0288HIGHPAN-OS: Buffer Overflow Vulnerabilities in User-ID Terminal Server AgentEPSS 0.8%CVE-2020-2017HIGHPAN-OS: DOM-Based cross site scripting vulnerability in management web interfaceEPSS 0.8%CVE-2026-0302LOWCheckov by Prisma Cloud: OS Command Injection VulnerabilityEPSS 0.8%CVE-2025-4615MEDIUMPAN-OS: Improper Neutralization of Input in the Management Web InterfaceEPSS 0.8%CVE-2021-3045MEDIUMPAN-OS: OS Command Argument Injection in Web InterfaceEPSS 0.8%CVE-2020-2035LOWPAN-OS: URL filtering policy is not enforced on TLS handshakes for decrypted HTTPS sessionsEPSS 0.8%CVE-2026-0279LOWPAN-OS: Multiple Cross-Site Scripting (XSS) VulnerabilitiesEPSS 0.8%CVE-2026-0227MEDIUMPAN-OS: Firewall Denial of Service (DoS) in GlobalProtect Gateway and PortalEPSS 0.7%CVE-2022-0018MEDIUMGlobalProtect App: Information Exposure Vulnerability When Connecting to GlobalProtect Portal With Single Sign-On EnabledEPSS 0.7%CVE-2020-2043LOWPAN-OS: Passwords may be logged in clear text when using after-change-detail custom syslog field for config logsEPSS 0.7%CVE-2022-0023MEDIUMPAN-OS: Denial-of-Service (DoS) Vulnerability in DNS ProxyEPSS 0.7%CVE-2020-2044LOWPAN-OS: Passwords may be logged in clear text while storing operational command (op command) historyEPSS 0.7%CVE-2021-3062HIGHPAN-OS: Improper Access Control Vulnerability Exposing AWS Instance Metadata Endpoint to GlobalProtect UsersEPSS 0.7%