A vulnerability exists in the PAN-OS management interface due to discrepancies in path processing between Nginx and Apache. The flaw allows an attacker to exploit a path confusion weakness using double URL encoding combined with directory traversal. This bypasses authentication checks enforced by the X-pan-AuthCheck header. A successful exploit grants unauthorized access to the administrative interface, potentially compromising the firewall management system.
An unauthenticated attacker can gain administrative access to PAN-OS, compromising network security.
Upgrade to the latest version of Palo Alto PAN-OS.

You can search and find all vulnerabilities
