Show filters
214 Total Results
Displaying 191-200 of 214
Sort by:
Attacker Value
Unknown
CVE-2016-3657
Disclosure Date: April 12, 2016 (last updated November 25, 2024)
Buffer overflow in the GlobalProtect Portal in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5 allows remote attackers to cause a denial of service (device crash) or possibly execute arbitrary code via an SSL VPN request.
0
Attacker Value
Unknown
CVE-2016-3655
Disclosure Date: April 12, 2016 (last updated November 25, 2024)
The management web interface in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5 allows remote attackers to execute arbitrary OS commands via an unspecified API call.
0
Attacker Value
Unknown
CVE-2016-3656
Disclosure Date: April 12, 2016 (last updated November 25, 2024)
The GlobalProtect Portal in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5H2 allows remote attackers to cause a denial of service (service crash) via a crafted request.
0
Attacker Value
Unknown
CVE-2016-3654
Disclosure Date: April 12, 2016 (last updated November 25, 2024)
The device management command line interface (CLI) in Palo Alto Networks PAN-OS before 5.0.18, 5.1.x before 5.1.11, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5H2 allows remote authenticated administrators to execute arbitrary OS commands via an SSH command parameter.
0
Attacker Value
Unknown
CVE-2015-4162
Disclosure Date: June 02, 2015 (last updated October 05, 2023)
XML external entity (XXE) vulnerability in the management interface in PAN-OS before 5.0.16, 6.x before 6.0.8, and 6.1.x before 6.1.4 allows remote authenticated administrators to obtain sensitive information via crafted XML data.
0
Attacker Value
Unknown
CVE-2014-3764
Disclosure Date: January 06, 2015 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the web-based device management interface in Palo Alto Networks PAN-OS before 5.0.15, 5.1.x before 5.1.10, and 6.0.x before 6.0.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka Ref ID 64563.
0
Attacker Value
Unknown
CVE-2012-6600
Disclosure Date: August 31, 2013 (last updated October 05, 2023)
The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.2 allows remote authenticated users to execute arbitrary commands via unspecified vectors, aka Ref ID 34502.
0
Attacker Value
Unknown
CVE-2012-6605
Disclosure Date: August 31, 2013 (last updated October 05, 2023)
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.11 and 4.0.x before 4.0.9 allows remote authenticated users to execute arbitrary code via unspecified vectors, aka Ref ID 34896.
0
Attacker Value
Unknown
CVE-2012-6603
Disclosure Date: August 31, 2013 (last updated October 05, 2023)
The web management UI in Palo Alto Networks PAN-OS before 3.1.12, 4.0.x before 4.0.10, and 4.1.x before 4.1.4 allows remote attackers to bypass authentication and obtain administrator privileges via unspecified vectors, aka Ref ID 37034.
0
Attacker Value
Unknown
CVE-2013-5663
Disclosure Date: August 31, 2013 (last updated October 05, 2023)
The App-ID cache feature in Palo Alto Networks PAN-OS before 4.0.14, 4.1.x before 4.1.11, and 5.0.x before 5.0.2 allows remote attackers to bypass intended security policies via crafted requests that trigger invalid caching, as demonstrated by incorrect identification of HTTP traffic as SIP traffic, aka Ref ID 47195.
0