CVE-2024-9474High· 7.2▾ Abyssal⚠ Exploited in the wild0dayPoC availableA privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS administrator with access to the management web interface to perform actions on the firewall with root privileges. Cloud NGFW and Prisma Access a…
▾ Abyssal zone — Critical with a public exploit or in-the-wild use
impact 39.6 · likelihood 18.9 · exploitation 25 · ransomware 5
A public proof-of-concept already exists for this vulnerability — see Exploit availability below.
Public exploit / PoC code seen in 3 sources. Availability, not in-the-wild use.
Exploit-prediction probability, daily snapshots since Aug 4.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Federal remediation due Dec 9, 2024
Last analysed / modified upstream
95%
5 GitHub repos · Metasploit ×1 · Nuclei ×1
Added to the CISA catalog on Nov 18, 2024. Federal remediation due Dec 9, 2024. View catalog ↗
A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS administrator with access to the management web interface to perform actions on the firewall with root privileges.
Cloud NGFW and Prisma Access are not impacted by this vulnerability.
pan-os >= 10.1.0, < 10.1.14pan-os >= 10.2.0, < 10.2.12pan-os >= 11.0.0, < 11.0.6pan-os >= 11.1.0, < 11.1.5pan-os >= 11.2.0, < 11.2.4pan-os = 10.1.14pan-os = 10.2.12pan-os = 11.0.6pan-os = 11.1.5pan-os = 11.2.4Upgrade past the affected range:
pan-os 11.2.4Field changes observed since this record was first indexed.
Connected by shared product, vendor, weakness, or advisory.
CVE-2024-0012Critical· 9.8An authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web interface to gain PAN-OS administrator privileges to perform administrative actions, tamper with…
CVE-2019-1579High· 8.1Remote Code Execution in PAN-OS 7.1.18 and earlier, PAN-OS 8.0.11-h1 and earlier, and PAN-OS 8.1.2 and earlier with GlobalProtect Portal or GlobalProtect Gateway Interface enabled may allow an unauthenticated remote attacker to execute a…
CVE-2026-0273High· 7.2A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user
CVE-2018-11138Critical· 9.8The '/common/download_agent_installer.php' script in the Quest KACE System Management Appliance 8.0.318 is accessible by anonymous users and can be abused to execute arbitrary commands on the system.
CVE-2024-51378Critical· 10.0getresetstatus in dns/views.py and ftp/views.py in CyberPanel (aka Cyber Panel) before 1c0c6cb allows remote attackers to bypass authentication and execute arbitrary commands via /dns/getresetstatus or /ftp/getresetstatus by bypassing se…
CVE-2019-15107Critical· 9.8An issue was discovered in Webmin <=1.920