← Back to browse · API

CVE-2019-1581

Severity
CRITICAL
CVSS
9.8
EPSS
0.03242
Risk score
40.33
CISA KEV
No
PoC
No
Published
2019-08-23
Modified
2024-09-17
First seen
2026-08-07
Aliases
EUVD-2019-10138, GHSA-XM25-5JMX-4MJC
Products
Palo Alto Networks:PAN-OS 7.1 <7.1.24-h1, 7.1.25, Palo Alto Networks:PAN-OS 8.0 <8.0.19-h1, 8.0.20, Palo Alto Networks:PAN-OS 8.1 <8.1.9-h4, 8.1.10, Palo Alto Networks:PAN-OS 9.0 <9.0.3-h3, 9.0.4
Sources
euvd EUVD-2019-10138

Description

A remote code execution vulnerability in the PAN-OS SSH device management interface that can lead to unauthenticated remote users with network access to the SSH management interface gaining root access to PAN-OS. This issue affects PAN-OS 7.1 versions prior to 7.1.24-h1, 7.1.25; 8.0 versions prior to 8.0.19-h1, 8.0.20; 8.1 versions prior to 8.1.9-h4, 8.1.10; 9.0 versions prior to 9.0.3-h3, 9.0.4.

References