Vulnérabilités
Vulnérabilités affectant les pare-feu et équipements de sécurité, avec les correctifs des éditeurs, le statut CISA KEV et l’EPSS.
Intelligence mise à jour le 30 sept. 2026 à 12:52 UTC
46 vulnérabilités
- CVE-2026-030113 août 2026
PAN-OS: Information Disclosure Vulnerability in URL Filtering
Élevée7,5CVSS 3.1, Élevée0,32 % - CVE-2026-02809 juil. 2026
PAN-OS: IPv6 Firewall Policy Bypass
Élevée7,2CVSS 3.1, Élevée0,34 % - CVE-2026-02819 juil. 2026
PAN-OS: Information Disclosure Vulnerability in Management Web Interface
Élevée7,1CVSS 3.1, Élevée0,28 % - CVE-2026-02839 juil. 2026
PAN-OS: Authentication Bypass Vulnerability in Large Scale VPN (LSVPN)
Élevée7,2CVSS 3.1, Élevée0,38 % - CVE-2026-02849 juil. 2026
PAN-OS: XML Injection Vulnerability in Large Scale VPN (LSVPN)
Critique9,9CVSS 3.1, Critique0,47 % - CVE-2026-02869 juil. 2026
PAN-OS: Authenticated Command Injection in CLI
Élevée7,2CVSS 3.1, Élevée2 % - CVE-2026-02879 juil. 2026
PAN-OS: Denial of Service Vulnerabilities in Network Traffic Processing
Élevée7,5CVSS 3.1, Élevée0,62 % - CVE-2026-02888 juil. 2026
PAN-OS: Buffer Overflow Vulnerabilities in User-ID Terminal Server Agent
Élevée7,5CVSS 3.1, Élevée0,83 % - CVE-2026-027310 juin 2026
PAN-OS: Authenticated Admin Command Injection Vulnerability via CLI or Web UI
Élevée7,2CVSS 3.1, Élevée1 % - CVE-2026-027210 juin 2026
PAN-OS: Privilege Escalation (PE) Vulnerability in the Command Line Interface (CLI)
Élevée7,2CVSS 3.1, Élevée0,26 % PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities
Critique9,1CVSS 3.1, Critique96 %- CVE-2026-025813 mai 2026
PAN-OS: Server-Side Request Forgery (SSRF) in IKEv2 Certificate URL Fetching
Critique9,1CVSS 3.1, Critique0,33 % - CVE-2026-025913 mai 2026
WildFire WF-500 and WF-500-B: Arbitrary File Read and Delete Vulnerability in WildFire Appliance (WF-500, WF-500-B)
Élevée8,8CVSS 3.1, Élevée0,34 % - CVE-2026-026113 mai 2026
PAN-OS: Authenticated Admin Command Injection Vulnerability
Élevée7,2CVSS 3.1, Élevée1 % - CVE-2026-026213 mai 2026
PAN-OS: Denial of Service Vulnerabilities in Network Traffic Parsing
Élevée7,5CVSS 3.1, Élevée0,36 % - CVE-2026-026313 mai 2026
PAN-OS: Remote Code Execution (RCE) in IKEv2 Processing
Critique9,8CVSS 3.1, Critique0,37 % - CVE-2026-026413 mai 2026
PAN-OS: Heap-Based Buffer Overflow in DNS Proxy and DNS Server Allows Unauthenticated Remote Code Execution
Critique9,8CVSS 3.1, Critique0,47 % - CVE-2026-026513 mai 2026
PAN-OS: Authentication Bypass with Cloud Authentication Service (CAS) enabled
Élevée8,1CVSS 3.1, Élevée1 % PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portal
Critique9,8CVSS 3.1, Critique32 %- CVE-2026-022715 janv. 2026
PAN-OS: Firewall Denial of Service (DoS) in GlobalProtect Gateway and Portal
Élevée7,5CVSS 3.1, Élevée0,75 % - CVE-2025-46159 oct. 2025
PAN-OS: Improper Neutralization of Input in the Management Web Interface
Élevée7,2CVSS 3.1, Élevée0,79 % - CVE-2025-423112 juin 2025
PAN-OS: Authenticated Admin Command Injection Vulnerability in the Management Web Interface
Élevée7,2CVSS 3.1, Élevée0,98 % - CVE-2025-013014 mai 2025
PAN-OS: Firewall Denial-of-Service (DoS) in the Web-Proxy Feature via a Burst of Maliciously Crafted Packets
Élevée7,5CVSS 3.1, Élevée0,42 % - CVE-2025-011412 mars 2025
PAN-OS: Denial of Service (DoS) in GlobalProtect
Élevée7,5CVSS 3.1, Élevée0,41 % PAN-OS: Authenticated File Read Vulnerability in the Management Web Interface
Moyenne6,5CVSS 3.1, Moyenne2 %PAN-OS: Authentication Bypass in the Management Web Interface
Critique9,1CVSS 3.1, Critique98 %PAN-OS: Firewall Denial of Service (DoS) in DNS Security Using a Specially Crafted Packet
Élevée7,5CVSS 3.1, Élevée28 %PAN-OS: Privilege Escalation (PE) Vulnerability in the Web Management Interface
Élevée7,2CVSS 3.1, Élevée95 %PAN-OS: Authentication Bypass in the Management Web Interface (PAN-SA-2024-0015)
Critique9,8CVSS 3.1, Critique100 %- CVE-2024-255014 nov. 2024
PAN-OS: Firewall Denial of Service (DoS) in GlobalProtect Gateway Using a Specially Crafted Packet
Élevée7,5CVSS 3.1, Élevée0,51 %