← Back to browse · API

CVE-2021-3064

Severity
CRITICAL
CVSS
9.8
EPSS
0.19087
Risk score
45.88
CISA KEV
No
PoC
No
Published
2021-11-10
Modified
2024-09-17
First seen
2026-08-07
Aliases
EUVD-2021-26416, GHSA-4753-H47C-JRW3
Products
Palo Alto Networks:PAN-OS 8.1 <8.1.17
Sources
euvd EUVD-2021-26416

Description

A memory corruption vulnerability exists in Palo Alto Networks GlobalProtect portal and gateway interfaces that enables an unauthenticated network-based attacker to disrupt system processes and potentially execute arbitrary code with root privileges. The attacker must have network access to the GlobalProtect interface to exploit this issue. This issue impacts PAN-OS 8.1 versions earlier than PAN-OS 8.1.17. Prisma Access customers are not impacted by this issue.

References