Palo Alto Schwachstellen

Zeitverlauf

Typ

Produkt

Palo Alto PAN-OS175
Palo Alto Networks PAN-OS22
Palo Alto GlobalProtect App15
Palo Alto Networks Cloud NGFW14
Palo Alto Networks Prisma Access14

Massnahmen

Official Fix232
Temporary Fix0
Workaround0
Unavailable1
Not Defined40

Ausnutzbarkeit

High9
Functional0
Proof-of-Concept19
Unproven1
Not Defined244

Zugriffsart

Not Defined0
Physical2
Local49
Adjacent2
Network220

Authentisierung

Not Defined0
High46
Low127
None100

Benutzeraktivität

Not Defined0
Required45
None228

CVSSv3 Base

≤10
≤20
≤39
≤428
≤545
≤658
≤748
≤849
≤925
≤1011

CVSSv3 Temp

≤10
≤20
≤310
≤433
≤551
≤651
≤762
≤835
≤920
≤1011

VulDB

≤10
≤22
≤317
≤437
≤552
≤655
≤732
≤847
≤920
≤1011

NVD

≤10
≤20
≤31
≤44
≤515
≤619
≤728
≤837
≤913
≤1017

CNA

≤10
≤20
≤31
≤42
≤515
≤614
≤723
≤812
≤910
≤104

Hersteller

≤10
≤20
≤31
≤40
≤51
≤60
≤70
≤80
≤90
≤101

Research

≤10
≤20
≤30
≤40
≤50
≤60
≤70
≤80
≤90
≤100

Exploit 0-day

<1k75
<2k90
<5k105
<10k0
<25k1
<50k0
<100k1
≥100k1

Exploit heute

<1k266
<2k5
<5k0
<10k0
<25k1
<50k1
<100k0
≥100k0

Affected Products (27): ActiveMQ Content Pack (1), Cloud NGFW (19), Cortex XDR Agent (19), Cortex XSOAR (9), Cortex XSOAR CommonScripts (1), Demisto (1), Expedition (1), Expedition Migration Tool (2), Firewall (1), GlobalProtect (1), Global Protect Agent (2), GlobalProtect Agent (3), GlobalProtect App (17), Global Protected Gateway (1), MineMeld (1), NetConnect (1), Network Traps ESM Console (1), Networks Global Protect Agent (1), Networks Twistlock (1), PAN-OS (197), Prisma Access (19), Prisma Cloud Compute (4), Terminal Services Agent (3), Traps (2), Traps Server (1), VM Series Firewall for Microsoft Azure (1), Web Interface (2)

VeröffentlichtBaseTempSchwachstelleProdAusMasEPSSCTICVE
11.09.20243.73.6Palo Alto Networks ActiveMQ Content Pack schwache VerschlüsselungUnbekanntNot DefinedOfficial Fix0.000430.03CVE-2024-8689
11.09.20244.24.0Palo Alto Networks Cortex XDR Agent Detection Mechanism Local Privilege EscalationUnbekanntNot DefinedOfficial Fix0.000430.05CVE-2024-8690
11.09.20245.35.1Palo Alto Networks PAN-OS/GlobalProtect App/Cloud NGFW/Prisma Access Configuration Local Privilege EscalationFirewall SoftwareNot DefinedOfficial Fix0.000430.00CVE-2024-8687
11.09.20247.26.9Palo Alto Networks PAN-OS/Cloud NGFW/Prisma Access erweiterte RechteFirewall SoftwareNot DefinedOfficial Fix0.000430.03CVE-2024-8686
11.09.20246.36.0Palo Alto Networks PAN-OS/Cloud NGFW/Prisma Access GlobalProtect Portal erweiterte RechteFirewall SoftwareNot DefinedOfficial Fix0.000430.04CVE-2024-8691
11.09.20242.32.2Palo Alto Networks PAN-OS/Cloud NGFW/Prisma Access Command Line Interface Information DisclosureFirewall SoftwareNot DefinedOfficial Fix0.000430.08CVE-2024-8688
14.08.20247.87.6Palo Alto GlobalProtect App erweiterte RechteUnbekanntNot DefinedOfficial Fix0.000430.00CVE-2024-5915
14.08.20247.77.6Palo Alto Cortex XSOAR CommonScripts erweiterte RechteUnbekanntNot DefinedOfficial Fix0.000900.02CVE-2024-5914
14.08.20243.33.3Palo Alto PAN-OS/Cloud NGFW/Prisma Access Information DisclosureFirewall SoftwareNot DefinedOfficial Fix0.000430.04CVE-2024-5916
10.07.20246.26.0Palo Alto Networks PAN-OS/Cloud NGFW/Prisma Access Physical File System erweiterte RechteFirewall SoftwareNot DefinedOfficial Fix0.000430.03CVE-2024-5913
10.07.20245.35.1Palo Alto Networks Cortex XDR Agent schwache AuthentisierungUnbekanntNot DefinedOfficial Fix0.000430.02CVE-2024-5912
10.07.20247.26.9Palo Alto Networks PAN-OS/Cloud NGFW/Prisma Access erweiterte RechteFirewall SoftwareNot DefinedOfficial Fix0.000430.04CVE-2024-5911
10.07.20249.89.4Palo Alto Networks Expedition schwache AuthentisierungUnbekanntNot DefinedOfficial Fix0.000430.04CVE-2024-5910
12.06.20243.33.2Palo Alto Networks GlobalProtect App Information DisclosureUnbekanntNot DefinedOfficial Fix0.000870.04CVE-2024-5908
12.06.20242.42.3Palo Alto Networks Prisma Cloud Compute Web Interface Cross Site ScriptingCloud SoftwareNot DefinedOfficial Fix0.000450.03CVE-2024-5906
12.06.20243.33.2Palo Alto Networks Cortex XDR Agent erweiterte RechteUnbekanntNot DefinedOfficial Fix0.000430.04CVE-2024-5909
12.06.20244.54.3Palo Alto Networks Cortex XDR Agent erweiterte RechteUnbekanntNot DefinedOfficial Fix0.000430.00CVE-2024-5907
12.06.20243.33.2Palo Alto Networks Cortex XDR Agent erweiterte RechteUnbekanntNot DefinedOfficial Fix0.000430.03CVE-2024-5905
12.04.20248.98.7Palo Alto Networks PAN-OS GlobalProtect erweiterte RechteFirewall SoftwareHighOfficial Fix0.964640.00CVE-2024-3400
10.04.20244.54.4Palo Alto Networks PAN-OS schwache VerschlüsselungFirewall SoftwareNot DefinedOfficial Fix0.000430.04CVE-2024-3387
10.04.20244.84.7Palo Alto Networks PAN-OS GlobalProtect Gateway erweiterte RechteFirewall SoftwareNot DefinedOfficial Fix0.000430.00CVE-2024-3388
10.04.20245.35.2Palo Alto Networks PAN-OSFirewall SoftwareNot DefinedOfficial Fix0.000430.04CVE-2024-3386
10.04.20247.57.3Palo Alto Networks PAN-OS Packets Denial of ServiceFirewall SoftwareNot DefinedOfficial Fix0.000430.00CVE-2024-3382
10.04.20247.57.3Palo Alto Networks PAN-OS Packet Denial of ServiceFirewall SoftwareNot DefinedOfficial Fix0.000430.06CVE-2024-3385
10.04.20246.16.0Palo Alto Networks PAN-OS Cloud Identity EngineFirewall SoftwareNot DefinedOfficial Fix0.000430.00CVE-2024-3383

248 weitere Einträge werden nicht mehr angezeigt

Want to stay up to date on a daily basis?

Enable the mail alert feature now!