Total vulnerabilities in the database
A blind XML External Entities (XXE) injection vulnerability in the Palo Alto Networks PAN-OS software enables an authenticated attacker to exfiltrate arbitrary files from firewalls to an attacker controlled server. This attack requires network access to the firewall management interface.
Software | From | Fixed in |
---|---|---|
paloaltonetworks / pan-os | 10.1.0 | 10.1.10 |
paloaltonetworks / pan-os | 10.2.0 | 10.2.5 |
paloaltonetworks / pan-os | 11.0.0 | 11.0.2 |