Tech

Palo Alto Networks says it fixed two major firewall zero-days being used in thousands of attacks

Share
Share


  • Palo Alto Networks releases patch for two serious flaws impacting its firewalls
  • The flaws were being abused in the wild to drop malware
  • CISA added them to its KEV catalog

Palo Alto Networks has revealed it fixed two major vulnerabilities plaguing its firewalls.

The bugs are an authentication bypass in the PAN-OS management web interface (CVE-2024-0012), and a privilege escalation flaw in PAN-OS (CVE-2024-9474). The former has a severity score of 9.3 (critical), and grants crooks the ability to gain admin privileges on the target endpoint, and the latter has a lower score, 6.9 (medium), but helps run commands on the firewall.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
3D-printing advance mitigates three defects simultaneously for failure-free metal parts
Tech

3D-printing advance mitigates three defects simultaneously for failure-free metal parts

From left: Associate Professor Lianyi Chen and Ph.D. students Jiandong Yuan and...

An innovative no-code prototype to automate design structure matrix generation
Tech

An innovative no-code prototype to automate design structure matrix generation

A diesel engine DSM generated through Auto-DSM. Credit: SUTD A design structure...

Maintaining bridge safety with a digital sensing-based monitoring system
Tech

Maintaining bridge safety with a digital sensing-based monitoring system

The program developed only for this project, it acquires the data from...