CVE-2025-0108
Palo Alto Networks PAN-OS Authentication Bypass Vulnerability
⚠ KEVEPSS 94.1%
Description
Palo Alto Networks PAN-OS contains an authentication bypass vulnerability in its management web interface. This vulnerability allows an unauthenticated attacker with network access to the management web interface to bypass the authentication normally required and invoke certain PHP scripts.
How to fix CVE-2025-0108
No package mapping is available — consult the references below for vendor-specific guidance.
Is CVE-2025-0108 being exploited?
Yes — CVE-2025-0108 is on the CISA Known Exploited Vulnerabilities (KEV) catalog. Patch immediately.
Affected packages (0)
No package mapping in OSV.