CVE-2021-3045 PAN-OS: OS Command Argument Injection in Web Interface (Severity: MEDIUM) August 11, 2021
CVE-2021-3036 PAN-OS: Administrator secrets are logged in web server logs when using the PAN-OS XML API incorrectly (Severity: MEDIUM) April 14, 2021
CVE-2021-3037 PAN-OS: Secrets for scheduled configuration exports are logged in system logs (Severity: LOW) April 14, 2021
CVE-2021-28041 PAN-OS: Informational: Impact of the OpenSSH vulnerability CVE-2021-28041 (Severity: NONE) March 24, 2021March 24, 2021
CVE-2020-2035 PAN-OS: URL filtering policy is not enforced on TLS handshakes for decrypted HTTPS sessions (Severity: LOW) March 3, 2021March 3, 2021
CVE-2020-2042 PAN-OS: Buffer overflow in the management web interface (Severity: HIGH) February 11, 2021February 11, 2021
CVE-2020-2044 PAN-OS: Passwords may be logged in clear text while storing operational command (op command) history (Severity: LOW) February 11, 2021February 11, 2021
CVE-2020-2043 PAN-OS: Passwords may be logged in clear text when using after-change-detail custom syslog field for config logs (Severity: LOW) February 11, 2021February 11, 2021
CVE-2020-2040 PAN-OS: Buffer overflow when Captive Portal or Multi-Factor Authentication (MFA) is enabled (Severity: CRITICAL) February 11, 2021February 11, 2021
CVE-2020-2001 PAN-OS: Panorama External control of file vulnerability leads to privilege escalation (Severity: HIGH) February 11, 2021February 11, 2021
CVE-2020-2048 PAN-OS: System proxy passwords may be logged in clear text while viewing system state (Severity: LOW) February 11, 2021February 11, 2021
CVE-2020-2022 PAN-OS: Panorama session disclosure during context switch into managed device (Severity: HIGH) February 11, 2021February 11, 2021
CVE-2020-2000 PAN-OS: OS command injection and memory corruption vulnerability (Severity: HIGH) February 11, 2021February 11, 2021
CVE-2020-1999 PAN-OS: Threat signatures are evaded by specifically crafted packets (Severity: MEDIUM) February 11, 2021February 11, 2021
CVE-2020-2050 PAN-OS: Authentication bypass vulnerability in GlobalProtect client certificate verification (Severity: HIGH) February 11, 2021February 11, 2021
CVE-2020-2036 PAN-OS: Reflected Cross-Site Scripting (XSS) vulnerability in management web interface (Severity: HIGH) February 11, 2021February 11, 2021