Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-0111


An authenticated file read vulnerability in the Palo Alto Networks PAN-OS software enables an authenticated attacker with network access to the management web interface to read files on the PAN-OS filesystem that are readable by the “nobody” user. You can greatly reduce the risk of this issue by restricting access to the management web interface to only trusted internal IP addresses according to our recommended best practices deployment guidelines https://live.paloaltonetworks.com/t5/community-blogs/tips-amp-tricks-how-to-secure-the-management-access-of-your-palo/ba-p/464431 . This issue does not affect Cloud NGFW or Prisma Access software.


Published

2025-02-12T21:15:16.793

Last Modified

2025-02-21T14:50:23.877

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.5 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-73
  • Type: Primary
    CWE-610

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System paloaltonetworks pan-os < 10.1.14 Yes
Operating System paloaltonetworks pan-os < 10.2.7 Yes
Operating System paloaltonetworks pan-os < 10.2.12 Yes
Operating System paloaltonetworks pan-os < 11.1.6 Yes
Operating System paloaltonetworks pan-os < 11.2.4 Yes
Operating System paloaltonetworks pan-os 10.1.14 Yes
Operating System paloaltonetworks pan-os 10.1.14 Yes
Operating System paloaltonetworks pan-os 10.1.14 Yes
Operating System paloaltonetworks pan-os 10.1.14 Yes
Operating System paloaltonetworks pan-os 10.1.14 Yes
Operating System paloaltonetworks pan-os 10.2.7 Yes
Operating System paloaltonetworks pan-os 10.2.7 Yes
Operating System paloaltonetworks pan-os 10.2.7 Yes
Operating System paloaltonetworks pan-os 10.2.7 Yes
Operating System paloaltonetworks pan-os 10.2.7 Yes
Operating System paloaltonetworks pan-os 10.2.7 Yes
Operating System paloaltonetworks pan-os 10.2.7 Yes
Operating System paloaltonetworks pan-os 10.2.7 Yes
Operating System paloaltonetworks pan-os 10.2.7 Yes
Operating System paloaltonetworks pan-os 10.2.7 Yes
Operating System paloaltonetworks pan-os 10.2.8 Yes
Operating System paloaltonetworks pan-os 10.2.8 Yes
Operating System paloaltonetworks pan-os 10.2.8 Yes
Operating System paloaltonetworks pan-os 10.2.8 Yes
Operating System paloaltonetworks pan-os 10.2.8 Yes
Operating System paloaltonetworks pan-os 10.2.8 Yes
Operating System paloaltonetworks pan-os 10.2.8 Yes
Operating System paloaltonetworks pan-os 10.2.8 Yes
Operating System paloaltonetworks pan-os 10.2.9 Yes
Operating System paloaltonetworks pan-os 10.2.9 Yes
Operating System paloaltonetworks pan-os 10.2.9 Yes
Operating System paloaltonetworks pan-os 10.2.9 Yes
Operating System paloaltonetworks pan-os 10.2.9 Yes
Operating System paloaltonetworks pan-os 10.2.9 Yes
Operating System paloaltonetworks pan-os 10.2.9 Yes
Operating System paloaltonetworks pan-os 10.2.9 Yes
Operating System paloaltonetworks pan-os 10.2.12 Yes
Operating System paloaltonetworks pan-os 10.2.12 Yes
Operating System paloaltonetworks pan-os 10.2.12 Yes
Operating System paloaltonetworks pan-os 10.2.12 Yes
Operating System paloaltonetworks pan-os 10.2.12 Yes
Operating System paloaltonetworks pan-os 10.2.13 Yes
Operating System paloaltonetworks pan-os 10.2.13 Yes
Operating System paloaltonetworks pan-os 10.2.13 Yes
Operating System paloaltonetworks pan-os 11.1.6 Yes
Operating System paloaltonetworks pan-os 11.2.4 Yes
Operating System paloaltonetworks pan-os 11.2.4 Yes
Operating System paloaltonetworks pan-os 11.2.4 Yes

References