← All Advisories

CVE-2026-0287

Last refreshed2026-10-06

Status: UPDATED  |  Advisory ID: CVE-2026-0287

Key Details

CVECVE-2026-0287
CVSS Score / Version7.5 (High) / CVSS v3.1
Updated2026-08-11
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS Proseattack vector is network; attack complexity is low; privileges required is none; user interaction is none; scope is unchanged; confidentiality impact is none; integrity impact is none; availability impact is high.
Affected productsPalo Alto Networks Cloud NGFW, Palo Alto Networks Prisma Access, Palo Alto Networks PAN-OS, and Siemens RUGGEDCOM APE1808
Classified asCWE-754 (Improper Check for Unusual or Exceptional Conditions)

Affected Products, Subsystems & Sectors

VendorProductAffected VersionsPatch Status
Palo Alto NetworksCloud NGFW
Palo Alto NetworksPrisma Access
Palo Alto NetworksPAN-OS
SiemensRUGGEDCOM APE1808
SubsystemsGeneral OT
SectorsMulti-sector

What to Know

Multiple denial of service vulnerabilities in Palo Alto Networks PAN-OS® software allow an unauthenticated attacker with network access to cause a denial of service (DoS) condition by sending specially crafted network traffic to or through a dataplane interface. Repeated attempts to trigger this condition result in the firewall entering maintenance mode.

Panorama is not impacted by these vulnerabilities. (NVD)

What to Do

Monitor Palo Alto Networks's and Siemens's web pages for any future patch releases. See vendor advisory link below.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-0287
CVEhttps://www.cve.org/CVERecord?id=CVE-2026-0287
Vendor advisoryhttps://security.paloaltonetworks.com/CVE-2026-0287