Palo Alto Networks PAN-OS 10.1.x < 10.1.14-h9 / 10.2.x < 10.2.7-h24 / 11.1.x < 11.1.6-h1 / 11.2.x < 11.2.4-h4 Vulnerability

medium Nessus Plugin ID 216167

Version 1.4

Feb 19, 2025, 2:45 AM

  • CVSS metrics ("CVSSv2 score" set to 6.5)
  • CVSS metrics ("CVSSv2 vector" set to "CVSS2#AV:N/AC:L/Au:S/C:P/I:P/A:P")
  • CVSS metrics ("CVSSv3 score" set to 8.8)
  • CVSS metrics ("CVSSv3 vector" set to "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H")
  • CVSS metrics ("Cvssv4 score" set to 5.1)
  • CVSSv2 severity (based on CVE-2025-0108, severity decreased from "High" to "Medium")
  • Detection (updated detection logic)
  • Plugin metadata

Plugin Feed: 202502190245

Version 1.3

Feb 18, 2025, 11:54 PM

  • CISA reference
  • CVSS metrics ("Cvssv4 threat vector" set to "CVSS:4.0/E:A")
  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:F/RL:OF/RC:C")
  • CVSS temporal metrics ("CVSSv3 temporal vector" set to "CVSS:3.0/E:F/RL:O/RC:C")
  • Exploit attributes ("Exploit available" set to "True")
  • Exploit attributes ("Exploitability ease" changed from "No known exploits are available" to "Exploits are available")

Plugin Feed: 202502182354

Version 1.2

Feb 14, 2025, 3:26 PM

  • IAVM reference
  • STIG Severity (set to "I")

Plugin Feed: 202502141526

Version 1.1

Feb 12, 2025, 10:45 PM

  • New

Plugin Feed: 202502122245

* Changelogs are generally available for changes made after Nov 1, 2022