CVE-2026-0300 Enables Root RCE in PAN-OS Captive Portal

ORIGINAL QUELLE:
socradar.io

Quelle: SOCRadar

CVE-2026-0300 Enables Root RCE in PAN-OS Captive Portal Palo Alto Networks disclosed CVE-2026-0300, a critical pre-authentication buffer overflow in the User-ID™ Authentication Portal (Captive Portal) service in PAN-OS. Under the right exposure conditions, an unauthenticated attacker can trigger remote code execution (RCE) as root on affected PA-Series and VM-Series firewalls. The vendor rates exploit maturity […]

← Zurück zum soc Archiv (06.05.2026)