Palo Alto Networks PAN-OS
cpe:2.3:o:paloaltonetworks:pan-os:*:*:*:*:*:*:*
- >= 11.0, <= 11.0.1
- >= 10.2, <= 10.2.4
- >= 10.1, <= 10.1.14-h10
- >= 10.1, <= 10.1.14-h9
- >= 10.1, <= 10.1.14-h8
A denial-of-service vulnerability has been identified in the GlobalProtect feature of Palo Alto Networks PAN-OS software. This vulnerability allows an unauthenticated attacker to disrupt service by sending a large volume of specially crafted packets over time. The issue impacts both the GlobalProtect portal and gateway, but does not affect Cloud NGFWs or Prisma Access software.
Exploitation of this vulnerability leads to a denial-of-service condition, causing the GlobalProtect service to become unavailable.
Users can upgrade to PAN-OS 11.0.2 or later, PAN-OS 10.2.5 or later, or PAN-OS 10.1.14-h11 or later. For all other older unsupported PAN-OS versions, upgrade to a supported fixed version.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.