Path traversal in Palo Alto PAN-OS - CVE-2025-0111
Published: February 18, 2025 / Updated: February 20, 2025
Palo Alto PAN-OS
Detailed vulnerability description
The vulnerability allows a remote user to perform directory traversal attacks.
The vulnerability exists due to input validation error when processing directory traversal sequences within the management web interface. A remote authenticated user can send a specially crafted HTTP request and read arbitrary files on the system.