← All Advisories

CVE-2026-0258

Status: UPDATED  |  Advisory ID: CVE-2026-0258

Key Details

CVECVE-2026-0258
CVSSCVSS 9.1 (Critical).
Affected productsSiemens RUGGEDCOM APE1808 Firmware and Palo Alto Networks PAN-OS
Classified asCWE-918 (Server-Side Request Forgery (SSRF))

What to Know

A server-side request forgery (SSRF) vulnerability in the IKEv2 implementation of Palo Alto Networks PAN-OS® software allows an unauthenticated attacker to cause the firewall to send network requests to unintended destinations or cause a denial of service (DoS) condition.

Panorama, Cloud NGFW and Prisma® Access are not impacted by these vulnerabilities.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-0258
Vendor advisoryhttps://security.paloaltonetworks.com/CVE-2026-0258