← Browse

CVE-2024-3393

Act now ● On CISA KEV — actively exploited

Actively exploited — on the CISA KEV list.

CVSS base
EPSS — probability of exploitation (30 days)
28.4%
98.0th percentile
CISA KEV
Listed
Added 2024-12-30 · patch by 2025-01-20
Weakness / dates
Published — · modified —

Description

Palo Alto Networks PAN-OS contains a vulnerability in parsing and logging malicious DNS packets in the DNS Security feature that, when exploited, allows an unauthenticated attacker to remotely reboot the firewall. Repeated attempts to trigger this condition will cause the firewall to enter maintenance mode.

Official: NVD · CVE.org