RCE Vulnerability in PAN-OS Exploited in-the-Wild (Campaign)
ID: d3e85f6e-0224-58b7-bd36-c1b19ad509fa
STIX ID: report--d3e85f6e-0224-58b7-bd36-c1b19ad509fa
Feed Name: Wiz Cloud Threat Landscape
Date Published: 2024-11-08
Date Updated: 2026-05-01
Author: [email protected] (Wiz Threat Research)
Palo Alto Networks has confirmed active exploitation of a critical unauthenticated remote code execution vulnerability (CVE-2024-0012) in the PAN-OS management interface that can bypass authentication and grant administrator privileges; customers are advised to restrict management interface access to trusted internal IPs per best practices, with Prisma Access and cloud NGFW believed unaffected and exploitation detected as of November 17, 2024.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
