AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2025-0128

UNKNOWN · CVSS N/A EPSS 0.29%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-04-11 · Last synced 2026-08-04

CyberRota Analysis

This vulnerability has an unknown severity rating. It affects Palo Alto, PAN-OS. Exploitation may require the attacker to be authenticated. It may lead to a denial-of-service condition.

CVE
CVE-2025-0128
Severity
UNKNOWN
CVSS
N/A
EPSS
0.29%
Palo Alto PAN-OS

Original NVD Description

A denial-of-service (DoS) vulnerability in the Simple Certificate Enrollment Protocol (SCEP) authentication feature of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker to initiate system reboots using a maliciously crafted packet. Repeated attempts to initiate a reboot causes the firewall to enter maintenance mode. Cloud NGFW is not affected by this vulnerability. Prisma® Access software is proactively patched and protected from this issue.