CVE-2020-1994: Palo Alto Networks PAN-OS

Medium severity, CVSS 4.4. EPSS: 0.2% chance of exploitation in the next 30 days.

A predictable temporary file vulnerability in PAN-OS allows a local authenticated user with shell access to corrupt arbitrary system files affecting the integrity of the system. This issue affects: All versions of PAN-OS 7.1 and 8.0; PAN-OS 8.1 versions earlier than 8.1.13; PAN-OS 9.0 versions earlier than 9.0.7.

Affected products

  • Palo Alto Networks PAN-OS: from 7.1.0, up to and including 7.1.26; from 8.0.0, up to and including 8.0.20; from 8.1.0, before 8.1.13 (fixed in 8.1.13); from 9.0.0, up to and including 9.0.6

Published 2020-05-13. Last modified 2026-06-17.