Improper authentication in Palo Alto PAN-OS - CVE-2024-0012
Published: November 18, 2024 / Updated: June 13, 2025
Vulnerability details
The vulnerability allows a remote attacker to compromise the affected system.
The vulnerability exists due to improper authentication in the Management Web Interface. A remote non-authenticated attacker can bypass authentication process and gain unauthorized access to the system.
Note, the vulnerability is being actively exploited in the wild in conjunction with #VU100528 (CVE-2024-9474).
Affected software
RUGGEDCOM APE1808
How to mitigate CVE-2024-0012
Links to Public Exploits and PoC-codes
- Exploit #11636 - PanOsExploitMultitool (Exploitation and Post-Exploitation Multitool for Palo Alto PAN-OS Systems affected by vulnerabilities CVE-2024-0012 and CVE-2024-9474) (June 13, 2025)
- Exploit #11174 - CVE-2024-0012-poc (February 25, 2025)
- Exploit #11123 - cve-2024-0012-gui-poc (February 7, 2025)
- Exploit #11033 - Palo Alto Networks PAN-OS Management Interface Unauthenticated Remote Code Execution (December 30, 2024)
- Exploit #10977 - cve-2024-0012-poc (December 13, 2024)
- Exploit #10950 - CVE-2024-0012 (December 6, 2024)
- Exploit #10911 - CVE-2024-0012-POC (November 22, 2024)
- Exploit #10907 - palo-alto-panos-cve-2024-0012 (November 22, 2024)
- Exploit #10906 - CVE-2024-0012 (November 22, 2024)
- Exploit #10899 - CVE-2024-0012 (Palo Alto CVE-2024-0012 Exploit POC) (November 22, 2024)