{"id":"CVE-2024-9474","title":"A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS administrator with access to the management web interface to perform actions on the firewall with root privileges.\n\nCloud NGFW and Prisma Access a…","summary":"A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS administrator with access to the management web interface to perform actions on the firewall with root privileges.\n\nCloud NGFW and Prisma Access a…","severity":"high","cvss":7.2,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-78","CWE-78"],"vendor":"paloaltonetworks","product":"pan-os","affected":["pan-os >= 10.1.0, < 10.1.14","pan-os >= 10.2.0, < 10.2.12","pan-os >= 11.0.0, < 11.0.6","pan-os >= 11.1.0, < 11.1.5","pan-os >= 11.2.0, < 11.2.4","pan-os = 10.1.14","pan-os = 10.2.12","pan-os = 11.0.6","pan-os = 11.1.5","pan-os = 11.2.4"],"patched":["pan-os 11.2.4"],"published":"2024-11-18","updated":"2026-08-04","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2024-9474","references":[{"url":"https://security.paloaltonetworks.com/CVE-2024-9474","label":"psirt@paloaltonetworks.com"},{"url":"https://unit42.paloaltonetworks.com/cve-2024-0012-cve-2024-9474/","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://github.com/k4nfr3/CVE-2024-9474","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0"},{"url":"https://labs.watchtowr.com/pots-and-pans-aka-an-sslvpn-palo-alto-pan-os-cve-2024-0012-and-cve-2024-9474/","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0"},{"url":"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2024-9474","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"tags":["nvd","kev","in-the-wild","exploit-available"],"epss":0.94701,"epssPercentile":0.99856,"kev":true,"kevDateAdded":"2024-11-18","kevDueDate":"2024-12-09","kevRansomware":true,"exploited":true,"zeroDay":true,"ingestedAt":"2026-08-04T05:36:12.666Z","exploits":{"github":5,"githubRepos":["https://github.com/Chocapikk/CVE-2024-9474","https://github.com/k4nfr3/CVE-2024-9474","https://github.com/deathvu/CVE-2024-9474"],"metasploit":["exploit/linux/http/panos_management_unauth_rce"],"nuclei":["CVE-2024-9474"],"checkedAt":"2026-09-21T15:26:52.902Z"},"exploitAvailable":true,"slug":"CVE-2024-9474","body":"## Overview\n\nA privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS administrator with access to the management web interface to perform actions on the firewall with root privileges.\n\nCloud NGFW and Prisma Access are not impacted by this vulnerability.\n\n## Affected\n\n- `pan-os >= 10.1.0, < 10.1.14`\n- `pan-os >= 10.2.0, < 10.2.12`\n- `pan-os >= 11.0.0, < 11.0.6`\n- `pan-os >= 11.1.0, < 11.1.5`\n- `pan-os >= 11.2.0, < 11.2.4`\n- `pan-os = 10.1.14`\n- `pan-os = 10.2.12`\n- `pan-os = 11.0.6`\n- `pan-os = 11.1.5`\n- `pan-os = 11.2.4`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `pan-os 11.2.4`","depth":"abyssal","depthScore":89,"depthScoreParts":{"impact":39.6,"likelihood":18.9,"exploitation":25,"ransomware":5},"changes":[{"seq":4755,"id":"CVE-2024-9474","ts":1788887203704,"field":"exploit_available","old":"false","new":"true"},{"seq":3638,"id":"CVE-2024-9474","ts":1788886319889,"field":"exploit_available","old":"true","new":"false"},{"seq":2489,"id":"CVE-2024-9474","ts":1788882988396,"field":"exploit_available","old":"false","new":"true"},{"seq":1518,"id":"CVE-2024-9474","ts":1788882401996,"field":"exploit_available","old":"true","new":"false"},{"seq":632,"id":"CVE-2024-9474","ts":1788881839736,"field":"exploit_available","old":"false","new":"true"}]}