logo

Critical Zero-Day Vulnerability in Palo Alto Networks Next-Generation Firewalls

ID: c996f070-98cf-566c-b6f9-137d48b62571

STIX ID: report--c996f070-98cf-566c-b6f9-137d48b62571

Feed Name: Kudelski Security

Threat Score
92/100

Date Published: 2024-11-18

Date Updated: 2026-07-22

...
...

**Critical PAN-OS zero-day (PAN-SA-2024-0015) actively exploited:** A CVSS v4.0 9.3 unauthenticated remote command execution flaw in Palo Alto Networks NGFW management interfaces is being exploited in the wild; attackers have deployed web shells for persistent access, approximately 11,180 internet-exposed management IPs are affected globally (notably U.S., India, Mexico, Thailand, Indonesia), three IPs and a webshell checksum were reported, and Palo Alto has provided mitigation guidance but no patch at publication.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.