CVE-2024-3393
Act now ● On CISA KEV — actively exploited
Actively exploited — on the CISA KEV list.
CVSS base
—
EPSS — probability of exploitation (30 days)
28.4%
98.0th percentile
CISA KEV
Listed
Added 2024-12-30 · patch by 2025-01-20
Weakness / dates
—
Published — · modified —
Description
Palo Alto Networks PAN-OS contains a vulnerability in parsing and logging malicious DNS packets in the DNS Security feature that, when exploited, allows an unauthenticated attacker to remotely reboot the firewall. Repeated attempts to trigger this condition will cause the firewall to enter maintenance mode.