#VU100596 Improper authentication in Palo Alto PAN-OS - CVE-2024-0012
Published: November 18, 2024 / Updated: June 13, 2025
Palo Alto PAN-OS
Palo Alto Networks, Inc.
Description
The vulnerability allows a remote attacker to compromise the affected system.
The vulnerability exists due to improper authentication in the Management Web Interface. A remote non-authenticated attacker can bypass authentication process and gain unauthorized access to the system.
Note, the vulnerability is being actively exploited in the wild in conjunction with #VU100528 (CVE-2024-9474).