cvedb.io
CVE-2024-9474
HIGH · CVSS 7.2 ⚠ KEV — EXPLOITED
EPSS exploitation probability: 100%
⚠ Listed in the CISA Known Exploited Vulnerabilities catalog — actively exploited.
Published 2024-11-18 · Last modified 2026-08-04T05:16:32.247

Summary

A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS administrator with access to the management web interface to perform actions on the firewall with root privileges. Cloud NGFW and Prisma Access are not impacted by this vulnerability.

Affected products

Palo Alto Networks — PAN-OS

Does this affect you?

Add your gear to cvedb and we'll alert you only when Palo Alto Networks ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.