#VU104022 Path traversal in Palo Alto PAN-OS - CVE-2025-0111
Published: February 18, 2025 / Updated: February 20, 2025
Palo Alto PAN-OS
Palo Alto Networks, Inc.
Description
The vulnerability allows a remote user to perform directory traversal attacks.
The vulnerability exists due to input validation error when processing directory traversal sequences within the management web interface. A remote authenticated user can send a specially crafted HTTP request and read arbitrary files on the system.