SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-0309

MEDIUM · CVSS 4 EPSS 0.45% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-10 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

A command injection vulnerability in Palo Alto Networks PAN-OS allows authenticated administrators with CLI access to execute arbitrary commands as a root user, potentially bypassing system restrictions. This risk is particularly concerning for environments utilizing a Luna Hardware Security Module (HSM), although it is mitigated if CLI access is limited to a small group of trusted administrators. Organizations using affected versions of PAN-OS should prioritize remediation to safeguard against potential exploitation.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-0309
Severity
MEDIUM
CVSS
4
EPSS
0.45%
Palo Alto PAN-OS

Original NVD Description

A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user. To be able to exploit this issue, the user must have access to the PAN-OS CLI and the device must be configured with a Luna Hardware Security Module (HSM). The security risk posed by this issue is significantly minimized when CLI access is restricted to a limited group of administrators. Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.