Vulnérabilités PAN-OS (CVE) : branches affectées, versions corrigées, CISA KEV
Patcharo suit 42 vulnérabilités rapprochées des versions Palo Alto Networks PAN-OS : 11 critiques, 10 exploitées activement (CISA KEV), 41 avec une version corrigée. Dernière modification des sources : 24 sept. 2026.
Dernière vérification par Patcharo : 30 sept. 2026 à 12:52 UTC
Branches
Par branche : CVE rapprochées, entrées CISA KEV, version corrigée la plus récente annoncée par l’éditeur et statut de support.
| Branche | CVE | KEV | Correctif le plus récent | Support |
|---|---|---|---|---|
| 12.1 | 18 | 2 | 12.1.8 | — |
| 11.2 | 26 | 7 | 11.2.13 | — |
| 11.1 | 30 | 8 | 11.1.16-h1 | — |
| 11.0 | 13 | 3 | 11.0.6-h1 | — |
| 10.2 | 36 | 9 | 10.2.18-h8 | — |
| 10.1 | 14 | 5 | 10.1.14-h20 | — |
| 10.0 | 4 | 1 | 10.0.13 | — |
| 9.1 | 7 | 2 | 9.1.17 | — |
| 9.0 | 6 | 2 | 9.0.18 | — |
| 8.1 | 4 | 2 | 8.1.25 | — |
| 8.0 | 1 | 1 | — | — |
| 7.1 | 1 | 1 | — | — |
Toutes les CVE PAN-OS
PAN-OS: Information Disclosure Vulnerability in URL Filtering
PAN-OSÉlevée7,5CVSS 3.1, Élevée0,32 %PAN-OS: IPv6 Firewall Policy Bypass
PAN-OSÉlevée7,2CVSS 3.1, Élevée0,34 %PAN-OS: Information Disclosure Vulnerability in Management Web Interface
PAN-OSÉlevée7,1CVSS 3.1, Élevée0,28 %PAN-OS: Authentication Bypass Vulnerability in Large Scale VPN (LSVPN)
PAN-OSÉlevée7,2CVSS 3.1, Élevée0,38 %PAN-OS: XML Injection Vulnerability in Large Scale VPN (LSVPN)
PAN-OSCritique9,9CVSS 3.1, Critique0,47 %PAN-OS: Authenticated Command Injection in CLI
PAN-OSÉlevée7,2CVSS 3.1, Élevée2 %PAN-OS: Denial of Service Vulnerabilities in Network Traffic Processing
PAN-OSÉlevée7,5CVSS 3.1, Élevée0,62 %PAN-OS: Buffer Overflow Vulnerabilities in User-ID Terminal Server Agent
PAN-OSÉlevée7,5CVSS 3.1, Élevée0,83 %PAN-OS: Authenticated Admin Command Injection Vulnerability via CLI or Web UI
PAN-OSÉlevée7,2CVSS 3.1, Élevée1 %PAN-OS: Privilege Escalation (PE) Vulnerability in the Command Line Interface (CLI)
PAN-OSÉlevée7,2CVSS 3.1, Élevée0,26 %- CVE-2026-0257KEVRançongiciel
PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities
PAN-OSCritique9,1CVSS 3.1, Critique96 % PAN-OS: Server-Side Request Forgery (SSRF) in IKEv2 Certificate URL Fetching
PAN-OSCritique9,1CVSS 3.1, Critique0,33 %PAN-OS: Authenticated Admin Command Injection Vulnerability
PAN-OSÉlevée7,2CVSS 3.1, Élevée1 %PAN-OS: Denial of Service Vulnerabilities in Network Traffic Parsing
PAN-OSÉlevée7,5CVSS 3.1, Élevée0,36 %PAN-OS: Remote Code Execution (RCE) in IKEv2 Processing
PAN-OSCritique9,8CVSS 3.1, Critique0,37 %- PAN-OSCritique9,8CVSS 3.1, Critique0,47 %
PAN-OS: Authentication Bypass with Cloud Authentication Service (CAS) enabled
PAN-OSÉlevée8,1CVSS 3.1, Élevée1 %- PAN-OSCritique9,8CVSS 3.1, Critique32 %
PAN-OS: Firewall Denial of Service (DoS) in GlobalProtect Gateway and Portal
PAN-OSÉlevée7,5CVSS 3.1, Élevée0,75 %PAN-OS: Improper Neutralization of Input in the Management Web Interface
PAN-OSÉlevée7,2CVSS 3.1, Élevée0,79 %PAN-OS: Authenticated Admin Command Injection Vulnerability in the Management Web Interface
PAN-OSÉlevée7,2CVSS 3.1, Élevée0,98 %- PAN-OSÉlevée7,5CVSS 3.1, Élevée0,42 %
PAN-OS: Denial of Service (DoS) in GlobalProtect
PAN-OSÉlevée7,5CVSS 3.1, Élevée0,41 %PAN-OS: Authenticated File Read Vulnerability in the Management Web Interface
PAN-OSMoyenne6,5CVSS 3.1, Moyenne2 %PAN-OS: Authentication Bypass in the Management Web Interface
PAN-OSCritique9,1CVSS 3.1, Critique98 %PAN-OS: Firewall Denial of Service (DoS) in DNS Security Using a Specially Crafted Packet
PAN-OSÉlevée7,5CVSS 3.1, Élevée28 %- CVE-2024-9474KEVRançongiciel
PAN-OS: Privilege Escalation (PE) Vulnerability in the Web Management Interface
PAN-OSÉlevée7,2CVSS 3.1, Élevée95 % - CVE-2024-0012KEVRançongiciel
PAN-OS: Authentication Bypass in the Management Web Interface (PAN-SA-2024-0015)
PAN-OSCritique9,8CVSS 3.1, Critique100 % PAN-OS: Firewall Denial of Service (DoS) in GlobalProtect Gateway Using a Specially Crafted Packet
PAN-OSÉlevée7,5CVSS 3.1, Élevée0,51 %PAN-OS: Firewall Denial of Service (DoS) Using a Specially Crafted Packet
PAN-OSÉlevée7,5CVSS 3.1, Élevée0,48 %PAN-OS: Firewall Denial of Service (DoS) via a Maliciously Crafted Packet
PAN-OSÉlevée7,5CVSS 3.1, Élevée0,41 %PAN-OS: User Impersonation in GlobalProtect Portal
PAN-OSÉlevée7,1CVSS 3.1, Élevée0,32 %PAN-OS: Cleartext Exposure of GlobalProtect Portal Passcodes
PAN-OSÉlevée7,1CVSS 3.1, Élevée0,41 %PAN-OS: Command Injection Vulnerability
PAN-OSÉlevée7,2CVSS 3.1, Élevée1 %- CVE-2024-3400KEVRançongiciel
PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect
PAN-OSCritique10CVSS 3.1, Critique100 % PAN-OS: Firewall Denial of Service (DoS) when GTP Security is Disabled
PAN-OSÉlevée7,5CVSS 3.1, Élevée0,91 %PAN-OS: Firewall Denial of Service (DoS) via Malformed NTLM Packets
PAN-OSÉlevée7,5CVSS 3.1, Élevée0,89 %PAN-OS: Improper Group Membership Change Vulnerability in Cloud Identity Engine (CIE)
PAN-OSCritique9,1CVSS 3.1, Critique0,58 %PAN-OS: Firewall Denial of Service (DoS) via a Burst of Crafted Packets
PAN-OSÉlevée7,5CVSS 3.1, Élevée0,93 %PAN-OS: Insufficient Session Expiration Vulnerability in the Web Interface
PAN-OSÉlevée8,8CVSS 3.1, Élevée0,50 %PAN-OS: Reflected Amplification Denial-of-Service (DoS) Vulnerability in URL Filtering
PAN-OSÉlevée8,6CVSS 3.1, Élevée2 %- CVE-2020-2021KEVRançongiciel
PAN-OS: Authentication Bypass in SAML Authentication
PAN-OSCritique10CVSS 3.1, Critique4 %