logo

Exploited in the Wild: Critical PAN-OS Buffer Overflow Grants Root Access to Palo Alto Firewalls

ID: aa8d54e8-c5f2-5211-b288-bcfb29f8abb1

STIX ID: report--aa8d54e8-c5f2-5211-b288-bcfb29f8abb1

Feed Name: securityonline.info

Threat Score
90/100

Date Published: 2026-05-06

Date Updated: 2026-05-08

Author: Ddos

...
...

Palo Alto Networks has published an urgent advisory for CVE-2026-0300, a critical CVSS 9.3 buffer overflow in the PAN-OS User-ID Authentication (Captive) Portal that permits unauthenticated remote attackers to execute arbitrary code with root privileges on PA-Series and VM-Series firewalls; limited exploitation has been observed, vendor hotfixes with ETAs are listed, and administrators are advised to restrict or disable the portal, verify exposure, and apply mitigation signatures until patches are available.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.