Vulnerabilities > Paloaltonetworks > PAN OS > 9.0.11

DATE CVE VULNERABILITY TITLE RISK
2021-08-11 CVE-2021-3048 Improper Input Validation vulnerability in Paloaltonetworks Pan-Os
Certain invalid URL entries contained in an External Dynamic List (EDL) cause the Device Server daemon (devsrvr) to stop responding.
network
high complexity
paloaltonetworks CWE-20
5.9
2021-08-11 CVE-2021-3050 OS Command Injection vulnerability in Paloaltonetworks Pan-Os
An OS command injection vulnerability in the Palo Alto Networks PAN-OS web interface enables an authenticated administrator to execute arbitrary OS commands to escalate privileges.
network
low complexity
paloaltonetworks CWE-78
8.8
2020-05-13 CVE-2020-2011 Improper Input Validation vulnerability in Paloaltonetworks Pan-Os
An improper input validation vulnerability in the configuration daemon of Palo Alto Networks PAN-OS Panorama allows for a remote unauthenticated user to send a specifically crafted registration request to the device that causes the configuration service to crash.
network
low complexity
paloaltonetworks CWE-20
7.5