Vulnerability Database

310,469

Total vulnerabilities in the database

CVE-2025-0114

A Denial of Service (DoS) vulnerability in the GlobalProtect feature of Palo Alto Networks PAN-OS software enables an unauthenticated attacker to render the service unavailable by sending a large number of specially crafted packets over a period of time. This issue affects both the GlobalProtect portal and the GlobalProtect gateway.

This issue does not apply to Cloud NGFWs or Prisma Access software.

  • Published: Mar 12, 2025
  • Updated: Nov 16, 2025
  • CVE: CVE-2025-0114
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 7.5
  • AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CWEs:

Software From Fixed in
paloaltonetworks / pan-os 10.1.0 10.1.14
paloaltonetworks / pan-os 10.2.0 10.2.5
paloaltonetworks / pan-os 11.0.0 11.0.2
paloaltonetworks / pan-os 10.1.14-h1 10.1.14-h1.x
paloaltonetworks / pan-os 10.1.14-h10 10.1.14-h10.x
paloaltonetworks / pan-os 10.1.14-h2 10.1.14-h2.x
paloaltonetworks / pan-os 10.1.14-h3 10.1.14-h3.x
paloaltonetworks / pan-os 10.1.14-h4 10.1.14-h4.x
paloaltonetworks / pan-os 10.1.14-h5 10.1.14-h5.x
paloaltonetworks / pan-os 10.1.14-h6 10.1.14-h6.x
paloaltonetworks / pan-os 10.1.14-h7 10.1.14-h7.x
paloaltonetworks / pan-os 10.1.14-h8 10.1.14-h8.x
paloaltonetworks / pan-os 10.1.14-h9 10.1.14-h9.x