VendorsPalo Alto Networkspan-os11.1.4
Vulnerabilities

Palo Alto Networks paloaltonetworks pan-os 11.1.4

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

26CVEs
CVE-2026-0284
PAN-OS: XML Injection Vulnerability in Large Scale VPN (LSVPN)
Published 2026-07-09 · Modified
9.9EPSS 0.005
CVE-2024-0012
PAN-OS: Authentication Bypass in the Management Web Interface (PAN-SA-2024-0015)
Published 2024-11-18 · Analyzed
9.8KEVEPSS 0.998
CVE-2026-0300
PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portal
Published 2026-05-06 · Analyzed
9.8KEVEPSS 0.317
CVE-2026-0264
PAN-OS: Heap-Based Buffer Overflow in DNS Proxy and DNS Server Allows Unauthenticated Remote Code Execution
Published 2026-05-13 · Analyzed
9.8EPSS 0.005
CVE-2026-0263
PAN-OS: Remote Code Execution (RCE) in IKEv2 Processing
Published 2026-05-13 · Analyzed
9.8EPSS 0.004
CVE-2025-0108
PAN-OS: Authentication Bypass in the Management Web Interface
Published 2025-02-12 · Analyzed
9.1KEVEPSS 0.985
CVE-2026-0257
PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities
Published 2026-05-13 · Analyzed
9.1KEVEPSS 0.964
CVE-2026-0258
PAN-OS: Server-Side Request Forgery (SSRF) in IKEv2 Certificate URL Fetching
Published 2026-05-13 · Analyzed
9.1EPSS 0.003
CVE-2026-0259
WildFire WF-500 and WF-500-B: Arbitrary File Read and Delete Vulnerability in WildFire Appliance (WF-500, WF-500-B)
Published 2026-05-13 · Analyzed
8.8EPSS 0.003
CVE-2024-3393
PAN-OS: Firewall Denial of Service (DoS) in DNS Security Using a Specially Crafted Packet
Published 2024-12-27 · Analyzed
8.7KEVEPSS 0.284
CVE-2024-2550
PAN-OS: Firewall Denial of Service (DoS) in GlobalProtect Gateway Using a Specially Crafted Packet
Published 2024-11-14 · Analyzed
8.7EPSS 0.005
CVE-2026-0265
PAN-OS: Authentication Bypass with Cloud Authentication Service (CAS) enabled
Published 2026-05-13 · Analyzed
8.1EPSS 0.011
CVE-2026-0288
PAN-OS: Buffer Overflow Vulnerabilities in User-ID Terminal Server Agent
Published 2026-07-08 · Modified
7.5EPSS 0.008
CVE-2026-0227
PAN-OS: Firewall Denial of Service (DoS) in GlobalProtect Gateway and Portal
Published 2026-01-15 · Analyzed
7.5EPSS 0.007
CVE-2026-0287
PAN-OS: Denial of Service Vulnerabilities in Network Traffic Processing
Published 2026-07-09 · Modified
7.5EPSS 0.006
CVE-2026-0262
PAN-OS: Denial of Service Vulnerabilities in Network Traffic Parsing
Published 2026-05-13 · Analyzed
7.5EPSS 0.004
CVE-2026-0286
PAN-OS: Authenticated Command Injection in CLI
Published 2026-07-09 · Modified
7.2EPSS 0.017
CVE-2026-0261
PAN-OS: Authenticated Admin Command Injection Vulnerability
Published 2026-05-13 · Analyzed
7.2EPSS 0.014
CVE-2026-0273
PAN-OS: Authenticated Admin Command Injection Vulnerability via CLI or Web UI
Published 2026-06-10 · Modified
7.2EPSS 0.013
CVE-2026-0283
PAN-OS: Authentication Bypass Vulnerability in Large Scale VPN (LSVPN)
Published 2026-07-09 · Modified
7.2EPSS 0.004
CVE-2026-0280
PAN-OS: IPv6 Firewall Policy Bypass
Published 2026-07-09 · Modified
7.2EPSS 0.003
CVE-2026-0272
PAN-OS: Privilege Escalation (PE) Vulnerability in the Command Line Interface (CLI)
Published 2026-06-10 · Modified
7.2EPSS 0.003
CVE-2024-2552
PAN-OS: Arbitrary File Delete Vulnerability in the Command Line Interface (CLI)
Published 2024-11-14 · Analyzed
6.8EPSS 0.005
CVE-2026-0269
PAN-OS: Denial of Service (DoS) in Tunnel Traffic Processing
Published 2026-06-10 · Modified
5.7EPSS 0.002
CVE-2026-0285
PAN-OS: Server-Side Request Forgery Vulnerability in Management Web Interface
Published 2026-07-09 · Modified
4.9EPSS 0.004
CVE-2026-0256
PAN-OS: Stored Cross-Site Scripting (XSS) Vulnerability in the Web Interface
Published 2026-05-13 · Analyzed
4.8EPSS 0.002