Command Injection Vulnerability in Palo Alto Networks PAN-OS Software
CVE-2025-4230
What is CVE-2025-4230?
A command injection issue in Palo Alto Networks PAN-OS software allows an authenticated administrator to bypass crucial system restrictions, enabling them to execute arbitrary commands with root privileges. This vulnerability requires that an administrator has access to the PAN-OS command line interface (CLI). To mitigate the risks associated with this flaw, it is essential to limit CLI access to a small, trusted group of administrators. Notably, services such as Cloud NGFW and Prisma Access are unaffected by this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
PAN-OS 11.2.0 < 11.2.6
PAN-OS 11.1.0 < 11.1.10
PAN-OS 10.2.0 < 10.2.14
References
CVSS V4
Timeline
Vulnerability published
- ๐พ
Exploit known to exist
Vulnerability Reserved