CVE-2025-0127: PAN-OS: Authenticated Admin Command Injection Vulnerability in PAN-OS VM-Series (Severity: MEDIUM)
A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user. This issue is only applicable to PAN-OS VM-Series. This issue does not affect firewalls that are already deployed.
Cloud NGFW and Prisma® Access are not affected by this vulnerability.
Affected Software
Remediation
Mitigation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-0127?
CVE-2025-0127 has a high severity due to its potential to allow an authenticated administrator to run arbitrary commands as a root user.
How do I fix CVE-2025-0127?
To mitigate CVE-2025-0127, ensure that your PAN-OS is updated to the latest version provided by Palo Alto Networks that addresses this vulnerability.
Who is affected by CVE-2025-0127?
CVE-2025-0127 specifically affects Palo Alto Networks PAN-OS VM-Series systems utilized by authenticated administrators.
What are the risks associated with CVE-2025-0127?
The risks of CVE-2025-0127 include unauthorized access and the potential for an attacker to execute arbitrary commands on the vulnerable system.
Is CVE-2025-0127 relevant to all Palo Alto Networks products?
No, CVE-2025-0127 is only applicable to PAN-OS VM-Series and does not impact other Palo Alto Networks firewall products.