Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Palo Alto Networks — Vulnerabilities & Security Advisories 280

Browse all 280 CVE security advisories affecting Palo Alto Networks. AI-powered Chinese analysis, POCs, and references for each vulnerability.

CVE IDTitleCVSSSeverityPublished
CVE-2020-2038 PAN-OS: OS command injection vulnerability in the management web interface — PAN-OSCWE-78 7.2 High2020-09-09
CVE-2020-2039 PAN-OS: Management web interface denial-of-service (DoS) through unauthenticated file upload — PAN-OSCWE-400 5.3 Medium2020-09-09
CVE-2020-2036 PAN-OS: Reflected Cross-Site Scripting (XSS) vulnerability in management web interface — PAN-OSCWE-79 8.8 High2020-09-09
CVE-2020-2037 PAN-OS: OS command injection vulnerability in the management web interface — PAN-OSCWE-78 7.2 High2020-09-09
CVE-2020-2035 PAN-OS: URL filtering policy is not enforced on TLS handshakes for decrypted HTTPS sessions — PAN-OSCWE-20 3.0 Low2020-08-12
CVE-2020-2034 PAN-OS: OS command injection vulnerability in GlobalProtect portal — PAN-OSCWE-78 8.1 High2020-07-08
CVE-2020-2030 PAN-OS: OS command injection vulnerability in the management interface — PAN-OSCWE-78 7.2 High2020-07-08
CVE-2020-2031 PAN-OS: Integer underflow in the management interface — PAN-OSCWE-191 4.9 Medium2020-07-08
CVE-2020-1982 PAN-OS: TLS 1.0 usage for certain communications with Palo Alto Networks cloud delivered services — PAN-OSCWE-326 4.8 Medium2020-07-08
CVE-2020-2021 PAN-OS: Authentication Bypass in SAML Authentication — PAN-OSCWE-347 10.0 Critical2020-06-29
CVE-2020-2033 GlobalProtect App: Missing certificate validation vulnerability can disclose pre-logon authentication cookie — GlobalProtect AppCWE-290 5.3 Medium2020-06-10
CVE-2020-2032 GlobalProtect App: File race condition vulnerability leads to local privilege escalation during upgrade — GlobalProtect AppCWE-367 7.0 High2020-06-10
CVE-2020-2029 PAN-OS: OS command injection vulnerability in management interface certificate generator — PAN-OSCWE-78 7.2 High2020-06-10
CVE-2020-2028 PAN-OS: OS command injection vulnerability in FIPS-CC mode certificate verification — PAN-OSCWE-78 7.2 High2020-06-10
CVE-2020-2027 PAN-OS: Buffer overflow in authd authentication response — PAN-OSCWE-121 7.2 High2020-06-10
CVE-2020-2011 PAN-OS: Panorama registration denial of service — PAN-OSCWE-20 7.5 High2020-05-13
CVE-2020-2012 PAN-OS: Panorama: XML external entity reference ('XXE') vulnerability leads the to information leak — PAN-OSCWE-611 7.5 High2020-05-13
CVE-2020-2013 PAN-OS: Panorama context switch session cookie disclosure — PAN-OSCWE-319 8.3 High2020-05-13
CVE-2020-2014 PAN-OS: OS injection vulnerability in PAN-OS management server — PAN-OSCWE-78 8.8 High2020-05-13
CVE-2020-2015 PAN-OS: Buffer overflow in the management server — PAN-OSCWE-120 8.8 High2020-05-13
CVE-2020-2016 PAN-OS: Temporary file race condition vulnerability in PAN-OS leads to local privilege escalation — PAN-OSCWE-377 7.0 High2020-05-13
CVE-2020-2017 PAN-OS: DOM-Based cross site scripting vulnerability in management web interface — PAN-OSCWE-79 8.8 High2020-05-13
CVE-2020-2018 PAN-OS: Panorama authentication bypass vulnerability — PAN-OSCWE-287 9.0 Critical2020-05-13
CVE-2020-1993 PAN-OS: GlobalProtect Portal PHP session fixation vulnerability — PAN-OSCWE-384 3.7 Low2020-05-13
CVE-2020-1994 PAN-OS: Predictable temporary file vulnerability — PAN-OSCWE-377 4.1 Medium2020-05-13
CVE-2020-1995 PAN-OS: Management server rasmgr denial of service — PAN-OSCWE-476 4.9 Medium2020-05-13
CVE-2020-1996 PAN-OS: Panorama management server log injection — PAN-OSCWE-862 5.3 Medium2020-05-13
CVE-2020-1997 PAN-OS: GlobalProtect registration open redirect — PAN-OSCWE-601 5.3 Medium2020-05-13
CVE-2020-1998 PAN-OS: Improper SAML SSO authorization of shared local users — PAN-OSCWE-285 5.4 Medium2020-05-13
CVE-2020-2001 PAN-OS: Panorama External control of file vulnerability leads to privilege escalation — PAN-OSCWE-123 8.1 High2020-05-13

This page lists every published CVE security advisory associated with Palo Alto Networks. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.