Palo Alto Networks Patches Authentication Bypass Exploit in PAN-OS Software
A high-severity security vulnerability in Palo Alto Networks' PAN-OS software that might lead to an authentication bypass has been fixed.
The vulnerability has a CVSS score of 7.8 out of 10.0 and is tagged as CVE-2025-0108. However, limiting access to the administrative interface to a jump box lowers the score to 5.1.
An unauthenticated attacker with network access to the management web interface can circumvent the authentication that the PAN-OS management web interface would otherwise require and launch specific PHP scripts thanks to an authentication bypass in the Palo Alto Networks PAN-OS software, the company stated in an advisory read more about Palo Alto Networks Patches Authentication Bypass Exploit in PAN-OS Software.
Get up to date on the latest cybersecurity news&n...


