FeedNetwork & InfrastructureA Vulnerability in PAN-OS Could Allow for Authentication Byp...
Network & InfrastructureCIS Advisories
8.0CRITICAL

A Vulnerability in PAN-OS Could Allow for Authentication Bypass

📅 22 June 2026 at 17:39 UTC📰 CIS AdvisoriesView original source ↗

A vulnerability has been discovered in the GlobalProtect portal and gateway of PAN-OS which could allow for authentication bypass. The PAN-OS GlobalProtect Portal acts as the central control plane for Palo Alto Networks VPN infrastructure. Successful exploitation of the vulnerability allows the attacker to bypass security restrictions and establish an unauthorized VPN connection.

🤖 AI BriefingAuto-generated threat analysis
🔍Threat Overview

A vulnerability in the GlobalProtect portal and gateway of PAN-OS allows for authentication bypass, potentially enabling attackers to establish unauthorized VPN connections and execute malicious actions.

⚙️Technical Details
Affected Systems
PAN-OS 11.2 < 11.2.4-h17PAN-OS 11.2 < 11.2.7-h14PAN-OS 11.2 < 11.2.10-h7PAN-OS 11.2 < 11.2.12PAN-OS 11.1 < 11.1.4-h33PAN-OS 11.1 < 11.1.6-h32PAN-OS 11.1 < 11.1.7-h6PAN-OS 11.1 < 11.1.10-h25PAN-OS 11.1 < 11.1.13-h5PAN-OS 11.1 < 11.1.15PAN-OS 10.2 < 10.2.7-h34PAN-OS 10.2 < 10.2.10-h36PAN-OS 10.2 < 10.2.13-h21PAN-OS 10.2 < 10.2.16-h7PAN-OS 10.2 < 10.2.18-h6Prisma Access 11.2.0 < 11.2.7-h13Prisma Access 10.2.0 < 10.2.10-h36
Attack Vectors
Exploit Public-Facing Application (T1190)Authentication bypass vulnerability in the GlobalProtect portal and gateway of PAN-OS software
💥Impact Assessment
Severity: HIGH
🛡️Recommended Actions
1Apply appropriate updates provided by PaloAlto or other vendors which use this software to vulnerable systems immediately after appropriate testing.
2Establish and maintain a documented vulnerability management process for enterprise assets.
3Perform application updates on enterprise assets through automated patch management on a monthly, or more frequent, basis.
📦Affected Products
PAN-OSPrisma Access

Read the full article

This is a curated summary. The complete article is available at CIS Advisories.

Read on CIS Advisories
← Back to feed