Palo Alto Networks has disclosed a high-severity vulnerability in PAN-OS that could allow unauthenticated attackers to execute arbitrary code or trigger a denial-of-service (DoS) condition by sending specially crafted network traffic. Tracked as CVE-2026-0288, the flaw carries a CVSS-B score of 9.2 (HIGH, CVSS-BT: 7.2) and has been assigned the HIGHEST urgency rating by the vendor. The issue stems from multiple buffer overflow vulnerabilities in the User-ID Terminal Server Agent (TSA) component of PAN-OS. An attacker with network access to the TSA IP and port requiring no authentication or user interaction can exploit the flaw to corrupt memory, potentially achieving remote code execution or crashing the affected service. The...
Læs hele artiklen hos kilden.
Kommentarer (0)
Ingen kommentarer ennå. Bli den første til å kommentere!