Vulnerabilities > Paloaltonetworks > PAN OS > 2.0
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2015-01-06 | CVE-2014-3764 | Cross-site Scripting vulnerability in Paloaltonetworks Pan-Os Cross-site scripting (XSS) vulnerability in the web-based device management interface in Palo Alto Networks PAN-OS before 5.0.15, 5.1.x before 5.1.10, and 6.0.x before 6.0.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka Ref ID 64563. | 4.3 |
2013-08-31 | CVE-2012-6605 | OS Command Injection vulnerability in Paloaltonetworks Pan-Os The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.11 and 4.0.x before 4.0.9 allows remote authenticated users to execute arbitrary code via unspecified vectors, aka Ref ID 34896. | 9.0 |
2013-08-31 | CVE-2012-6604 | OS Command Injection vulnerability in Paloaltonetworks Pan-Os The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.11 and 4.0.x before 4.0.9 allows remote authenticated users to execute arbitrary code via unspecified vectors, aka Ref ID 35249. | 9.0 |
2013-08-31 | CVE-2012-6603 | Improper Authentication vulnerability in Paloaltonetworks Pan-Os The web management UI in Palo Alto Networks PAN-OS before 3.1.12, 4.0.x before 4.0.10, and 4.1.x before 4.1.4 allows remote attackers to bypass authentication and obtain administrator privileges via unspecified vectors, aka Ref ID 37034. | 10.0 |
2013-08-31 | CVE-2012-6602 | OS Command Injection vulnerability in Paloaltonetworks Pan-Os The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.4 allows remote authenticated users to execute arbitrary commands via unspecified vectors, aka Ref ID 30122. | 9.0 |
2013-08-31 | CVE-2012-6601 | OS Command Injection vulnerability in Paloaltonetworks Pan-Os The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.12, 4.0.x before 4.0.10, and 4.1.x before 4.1.4 allows remote attackers to execute arbitrary code via unspecified vectors, aka Ref ID 36983. | 10.0 |
2013-08-31 | CVE-2012-6597 | Improper Input Validation vulnerability in Paloaltonetworks Pan-Os Palo Alto Networks PAN-OS before 3.1.11 and 4.0.x before 4.0.9 allows remote authenticated users to cause a denial of service (management-server crash) by using the command-line interface for a crafted command, aka Ref ID 35254. | 6.3 |
2013-08-31 | CVE-2012-6594 | OS Command Injection vulnerability in Paloaltonetworks Pan-Os The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.11, 4.0.x before 4.0.8, and 4.1.x before 4.1.1 allows remote authenticated administrators to execute arbitrary commands via unspecified vectors, aka Ref ID 34299. | 9.0 |
2013-08-31 | CVE-2012-6593 | OS Command Injection vulnerability in Paloaltonetworks Pan-Os Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.4 allows remote attackers to execute arbitrary commands via unspecified vectors, aka Ref ID 30088. | 10.0 |
2013-08-31 | CVE-2012-6592 | OS Command Injection vulnerability in Paloaltonetworks Pan-Os Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.5 allows remote attackers to execute arbitrary commands via unspecified vectors, aka Ref ID 31091. | 10.0 |