VYPR

Palo Alto Networks

by Paloaltonetworks

CVEs (5)

  • CVE-2018-10143CriDec 12, 2018
    risk 0.66cvss 9.8epss 0.25

    The Palo Alto Networks Expedition Migration tool 1.0.107 and earlier may allow an unauthenticated attacker with remote access to run system level commands on the device hosting this service/application.

  • CVE-2018-10142HigNov 27, 2018
    risk 0.49cvss 7.5epss 0.02

    The Expedition Migration tool 1.0.106 and earlier may allow an unauthenticated attacker to enumerate files on the operating system.

  • CVE-2019-1566MedJan 30, 2019
    risk 0.40cvss 6.1epss 0.01

    The PAN-OS management web interface in PAN-OS 7.1.21 and earlier, PAN-OS 8.0.14 and earlier, and PAN-OS 8.1.5 and earlier, may allow an unauthenticated attacker to inject arbitrary JavaScript or HTML.

  • CVE-2018-10141MedOct 12, 2018
    risk 0.40cvss 6.1epss 0.04

    GlobalProtect Portal Login page in Palo Alto Networks PAN-OS before 8.1.4 allows an unauthenticated attacker to inject arbitrary JavaScript or HTML.

  • CVE-2019-1565MedJan 30, 2019
    risk 0.35cvss 5.4epss 0.01

    The PAN-OS external dynamics lists in PAN-OS 7.1.21 and earlier, PAN-OS 8.0.14 and earlier, and PAN-OS 8.1.5 and earlier, may allow an attacker that is authenticated in Next Generation Firewall with write privileges to External Dynamic List configuration to inject arbitrary…