Security Update – Palo Alto Firewall Vulnerability

Security Update: Palo Alto Firewall Vulnerability

Vulnerability Name: Palo Alto Firewall Vulnerability

Platform or Software Package(s) Affected: PAN-OS (CVE-2024-0012 and CVE-2024-9474)

Criticality: Highly Critical (9.3/10)

Recommended Action: Verify the next-generation firewall management interface is not accessible from the internet. Also, review and enforce Secure Administrative Access by ensuring only authorized personnel with secure and unique passwords, as well as multifactor authentication, can access the administrative console. As always, monitor all security logs for suspicious activity.

Overview of Concern and Overview of Remediation:

Over 2,000 devices were hijacked/compromised last week just one day after Palo Alto Networks released patches for known security holes in their PAN-OS operating system. An attacker with network access to the administrative interface can exploit the above two vulnerabilities to escalate privileges and gain administrative access, allowing for arbitrary code execution and administrative functions. Anyone utilizing a Palo Alto Firewall is highly encouraged to immediately take the above-noted recommended action.

Please contact Jeremy Burris at S.R. Snodgrass, P.C. with any questions (jburris@srsnodgrass.com).

Sincerely,

S.R. Snodgrass, P.C.

d/b/a S.R. Snodgrass, A.C. in West Virginia

Share:

Facebook
Twitter
Pinterest
LinkedIn
Get The Latest Updates

Subscribe To Our Newsletter

Name

Most Popular

Related Posts

Compliance Update 3rd Quarter – 2026

Agencies Jointly Remove Additional References to Reputation Risk On June 2, 2026, the Federal Deposit Insurance Corporation (FDIC), Federal Reserve Board (FRB), and Office of

The Hidden Perils of Ignoring SEC Custody Rule Compliance

Failing to comply with the SEC Custody Rule can expose investment advisers to regulatory action, financial penalties, and reputational damage. Learn what the rule requires, common compliance pitfalls, and practical steps firms can take to reduce risk.

CBLR Rule Change Update

Interagency Final Rule on Revisions to the Community Bank Leverage Ratio (CBLR) Framework On April 23, 2026, the federal banking agencies jointly adopted a final