Junglewise Threat Intelligence

CVE-2025-0108: Palo Alto Networks PAN-OS Authentication Bypass Vulnerability

CVE-2025-0108 · Severity: critical · CVSS 9.1 · Exploited in the wild · Published 2025-02-18

Technologies: Palo Alto Networks PAN-OS. Vendors: Palo Alto Networks, Palo Alto Networks.

Executive brief

An authentication bypass vulnerability in Palo Alto Networks PAN-OS management web interface allows unauthenticated network attackers to invoke certain PHP scripts. While it does not directly enable remote code execution, it can significantly compromise the integrity and confidentiality of the system.

Affected products

  • Palo Alto Networks PAN-OS 10.1.x < 10.1.14, 11.2.x < 11.2.4, 11.1.x, 10.2.x

Timeline

  • 2025-02-18: disclosed
  • 2025-02-18: kev added: Added to CISA Known Exploited Vulnerabilities Catalog
  • 2025-02-18: exploited: Confirmed exploitation in the wild at time of disclosure

Related threats