Urgent: Critical Palo Alto Networks Firewall Vulnerability Under Active Exploit
2025-02-19

Three vulnerabilities in Palo Alto Networks' PAN-OS software allow attackers to gain root access to affected systems. CVE-2025-0108 allows unauthenticated attackers to bypass authentication, CVE-2024-9474 allows privilege escalation, and CVE-2025-0111 enables reading files accessible to the "nobody" user. Attackers are actively chaining these vulnerabilities to gain full control. Palo Alto Networks has released patches and urges immediate upgrades, especially for systems with internet-facing management interfaces. Even with restricted access, patching is crucial.
Tech