CVE-2016-9150: Palo Alto Networks PAN-OS
Critical severity, CVSS 9.8. EPSS: 34.8% chance of exploitation in the next 30 days.
Buffer overflow in the management web interface in Palo Alto Networks PAN-OS before 5.0.20, 5.1.x before 5.1.13, 6.0.x before 6.0.15, 6.1.x before 6.1.15, 7.0.x before 7.0.11, and 7.1.x before 7.1.6 allows remote attackers to execute arbitrary code via unspecified vectors.
Affected products
- Palo Alto Networks PAN-OS: from 5.0.0, before 5.0.20 (fixed in 5.0.20); from 5.1, before 5.1.13 (fixed in 5.1.13); from 6.0.0, before 6.0.15 (fixed in 6.0.15); from 6.1.0, before 6.1.15 (fixed in 6.1.15); from 7.0.0, before 7.0.11 (fixed in 7.0.11); from 7.1.0, before 7.1.6 (fixed in 7.1.6)
Published 2016-11-19. Last modified 2026-06-17.