Nginx/Apache Path Confusion to Auth Bypass in PAN-OS (CVE-2025-0108)
Nginx/Apache Path Confusion to Auth Bypass in PAN-OS
A few months ago, the news broke of CVE-2024-0012 and CVE-2024-9474 under active exploitation in Palo Alto's firewall. Described as a combination of an auth bypass and command execution, successful exploitation led to root on the affected devices.
At Assetnote, we not only wrot...
