Show filters
214 Total Results
Displaying 191-200 of 214
Sort by:
Attacker Value
Unknown

CVE-2016-3657

Disclosure Date: April 12, 2016 (last updated November 25, 2024)
Buffer overflow in the GlobalProtect Portal in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5 allows remote attackers to cause a denial of service (device crash) or possibly execute arbitrary code via an SSL VPN request.
0
Attacker Value
Unknown

CVE-2016-3655

Disclosure Date: April 12, 2016 (last updated November 25, 2024)
The management web interface in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5 allows remote attackers to execute arbitrary OS commands via an unspecified API call.
0
Attacker Value
Unknown

CVE-2016-3656

Disclosure Date: April 12, 2016 (last updated November 25, 2024)
The GlobalProtect Portal in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5H2 allows remote attackers to cause a denial of service (service crash) via a crafted request.
0
Attacker Value
Unknown

CVE-2016-3654

Disclosure Date: April 12, 2016 (last updated November 25, 2024)
The device management command line interface (CLI) in Palo Alto Networks PAN-OS before 5.0.18, 5.1.x before 5.1.11, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5H2 allows remote authenticated administrators to execute arbitrary OS commands via an SSH command parameter.
0
Attacker Value
Unknown

CVE-2015-4162

Disclosure Date: June 02, 2015 (last updated October 05, 2023)
XML external entity (XXE) vulnerability in the management interface in PAN-OS before 5.0.16, 6.x before 6.0.8, and 6.1.x before 6.1.4 allows remote authenticated administrators to obtain sensitive information via crafted XML data.
0
Attacker Value
Unknown

CVE-2014-3764

Disclosure Date: January 06, 2015 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the web-based device management interface in Palo Alto Networks PAN-OS before 5.0.15, 5.1.x before 5.1.10, and 6.0.x before 6.0.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka Ref ID 64563.
0
Attacker Value
Unknown

CVE-2012-6600

Disclosure Date: August 31, 2013 (last updated October 05, 2023)
The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.2 allows remote authenticated users to execute arbitrary commands via unspecified vectors, aka Ref ID 34502.
0
Attacker Value
Unknown

CVE-2012-6605

Disclosure Date: August 31, 2013 (last updated October 05, 2023)
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.11 and 4.0.x before 4.0.9 allows remote authenticated users to execute arbitrary code via unspecified vectors, aka Ref ID 34896.
0
Attacker Value
Unknown

CVE-2012-6603

Disclosure Date: August 31, 2013 (last updated October 05, 2023)
The web management UI in Palo Alto Networks PAN-OS before 3.1.12, 4.0.x before 4.0.10, and 4.1.x before 4.1.4 allows remote attackers to bypass authentication and obtain administrator privileges via unspecified vectors, aka Ref ID 37034.
0
Attacker Value
Unknown

CVE-2013-5663

Disclosure Date: August 31, 2013 (last updated October 05, 2023)
The App-ID cache feature in Palo Alto Networks PAN-OS before 4.0.14, 4.1.x before 4.1.11, and 5.0.x before 5.0.2 allows remote attackers to bypass intended security policies via crafted requests that trigger invalid caching, as demonstrated by incorrect identification of HTTP traffic as SIP traffic, aka Ref ID 47195.
0