CVE-2024-0008: Palo Alto Networks PAN-OS
High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.
Web sessions in the management interface in Palo Alto Networks PAN-OS software do not expire in certain situations, making it susceptible to unauthorized access.
Affected products
- Palo Alto Networks PAN-OS: from 10.2.0, before 10.2.5 (fixed in 10.2.5); from 11.0.0, before 11.0.2 (fixed in 11.0.2); from 10.1.0, before 10.1.10 (fixed in 10.1.10); version 10.1.10 only; from 10.0.0, before 10.0.12 (fixed in 10.0.12); version 10.0.12 only; …
Published 2024-02-14. Last modified 2026-06-17.