Vulnerability Details CVE-2025-0114
A Denial of Service (DoS) vulnerability in the GlobalProtect feature of Palo Alto Networks PAN-OS software enables an unauthenticated attacker to render the service unavailable by sending a large number of specially crafted packets over a period of time. This issue affects both the GlobalProtect portal and the GlobalProtect gateway.
This issue does not apply to Cloud NGFWs or Prisma Access software.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 9.2%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2025-0114
-
cpe:2.3:o:paloaltonetworks:pan-os:10.1.0
-
cpe:2.3:o:paloaltonetworks:pan-os:10.1.1
-
cpe:2.3:o:paloaltonetworks:pan-os:10.1.10
-
cpe:2.3:o:paloaltonetworks:pan-os:10.1.11
-
cpe:2.3:o:paloaltonetworks:pan-os:10.1.12
-
cpe:2.3:o:paloaltonetworks:pan-os:10.1.14
-
cpe:2.3:o:paloaltonetworks:pan-os:10.1.2
-
cpe:2.3:o:paloaltonetworks:pan-os:10.1.3
-
cpe:2.3:o:paloaltonetworks:pan-os:10.1.5
-
cpe:2.3:o:paloaltonetworks:pan-os:10.1.6
-
cpe:2.3:o:paloaltonetworks:pan-os:10.1.7
-
cpe:2.3:o:paloaltonetworks:pan-os:10.1.8
-
cpe:2.3:o:paloaltonetworks:pan-os:10.1.9
-
cpe:2.3:o:paloaltonetworks:pan-os:10.2.0
-
cpe:2.3:o:paloaltonetworks:pan-os:10.2.1
-
cpe:2.3:o:paloaltonetworks:pan-os:10.2.2
-
cpe:2.3:o:paloaltonetworks:pan-os:10.2.3
-
cpe:2.3:o:paloaltonetworks:pan-os:10.2.4
-
cpe:2.3:o:paloaltonetworks:pan-os:11.0.0
-
cpe:2.3:o:paloaltonetworks:pan-os:11.0.1