PoC Index

CVE-2019-1579

KEV RANSOMWAREHIGH 8.1EPSS 46.2%

Remote Code Execution in PAN-OS 7.1.18 and earlier, PAN-OS 8.0.11-h1 and earlier, and PAN-OS 8.1.2 and earlier with GlobalProtect Portal or GlobalProtect Gateway Interface enabled may allow an unauthenticated remote attacker to execute arbitrary code.

CVSS v3.1
8.1 HIGHCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS v3.1
8.1 HIGHCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS v2.0
6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
EPSS
46.24% chance of exploitation in the next 30 days, 99th percentile
CISA KEV
added 2022-01-10, used in ransomware campaigns
Nuclei
high · CWE-134
Published
2019-07-19
Updated
2026-08-12

Proof-of-concept exploits (3)

Nuclei templates (1)

References

Related