logo

Palo Alto Networks PAN-OS Authentication Bypass Vulnerability (CVE-2025-0108)

ID: edeec664-7bdf-51a5-9722-57a6aec86595

STIX ID: report--edeec664-7bdf-51a5-9722-57a6aec86595

Feed Name: Security Boulevard

Threat Score
70/100

Date Published: 2025-02-14

Date Updated: 2026-04-22

Author: NSFOCUS

...
...

NSFOCUS reports a high-severity PAN-OS authentication bypass (CVE-2025-0108, CVSS 7.8) caused by path processing flaws in Nginx/Apache on PAN-OS that can let unauthenticated attackers reach the management web interface and call PHP scripts; affected PAN-OS versions and fixed releases are listed, a public PoC exists, and users are advised to apply official upgrades or temporary access restrictions.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.