Palo Alto Products Multiple Vulnerabilities
Release Date: 14 Aug 2026
Multiple vulnerabilities were identified in Palo Alto Products. A remote attacker could exploit some of these vulnerabilities to trigger elevation of privilege, security restriction bypass, sensitive information disclosure, remote code execution and data manipulation on the targeted system.
Impact
- Information Disclosure
- Remote Code Execution
- Data Manipulation
- Elevation of Privilege
- Security Restriction Bypass
System / Technologies affected
- Cloud NGFW All versions on AWS
- Cloud NGFW All versions on Azure
- GlobalProtect App 6.0 versions earlier than 6.0.15 on Android
- GlobalProtect App 6.0 versions earlier than 6.0.15 on Chrome OS
- GlobalProtect App 6.0 versions earlier than 6.0.15 on iOS
- GlobalProtect App 6.0 versions earlier than 6.0.15 on Linux
- GlobalProtect App 6.0 versions earlier than 6.0.15 on macOS
- GlobalProtect App 6.0 versions earlier than 6.0.15 on Windows
- GlobalProtect App 6.2 All versions on Linux
- GlobalProtect App 6.2 versions earlier than 6.2.8-h13 (6.2.8-1045) on macOS
- GlobalProtect App 6.2 versions earlier than 6.2.8-h13 (6.2.8-1045) on Windows
- GlobalProtect App 6.3 versions earlier than 6.3.5 on Android
- GlobalProtect App 6.3 versions earlier than 6.3.5 on Chrome OS
- GlobalProtect App 6.3 versions earlier than 6.3.5 on iOS
- GlobalProtect App 6.3 versions earlier than 6.3.3-h15 on Linux
- GlobalProtect App 6.3 versions earlier than 6.3.3-h14 (6.3.3-1121) on macOS
- GlobalProtect App 6.3 versions earlier than 6.3.3-h14 (6.3.3-1121) on Windows
- PAN-OS 10.2 versions earlier than 10.2.8
- PAN-OS 11.1 versions earlier than 11.1.16-h1
- Prisma Access 10.2 versions earlier than 10.2.10
Solutions
Before installation of the software, please visit the vendor web-site for more details.
Apply fixes issued by the vendor:
- https://security.paloaltonetworks.com/CVE-2026-0301/
- https://security.paloaltonetworks.com/CVE-2026-0297/
- https://security.paloaltonetworks.com/CVE-2026-0296/
- https://security.paloaltonetworks.com/CVE-2026-0299/
- https://security.paloaltonetworks.com/CVE-2026-0298/
- https://security.paloaltonetworks.com/CVE-2026-0295/
Vulnerability Identifier
Source
Related Link
- https://security.paloaltonetworks.com/
- https://security.paloaltonetworks.com/CVE-2026-0301/
- https://security.paloaltonetworks.com/CVE-2026-0297/
- https://security.paloaltonetworks.com/CVE-2026-0296/
- https://security.paloaltonetworks.com/CVE-2026-0299/
- https://security.paloaltonetworks.com/CVE-2026-0298/
- https://security.paloaltonetworks.com/CVE-2026-0295/
沒有留言:
發佈留言