CVE-2026-0244: Prisma SD-WAN: Improper Certificate Validation Vulnerability (Severity: MEDIUM)
An improper certificate validation vulnerability in the Palo Alto Networks Prisma SD-WAN ION enables man-in-the-middle (MitM) attacker to impersonate the controller.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.5.3-b15Fixed in 6.4.3-b8Fixed in 6.3.6-b10 - Upgrade
Upgrade
Palo Alto Networks Prisma SD-WAN ION 6.3to a version that resolves this vulnerability.Fixed in 6.3.6-b10 - Upgrade
Upgrade
Palo Alto Networks Prisma SD-WAN ION 6.4to a version that resolves this vulnerability.Fixed in 6.4.3-b8 - Upgrade
Upgrade
Palo Alto Networks Prisma SD-WAN ION 6.5to a version that resolves this vulnerability.Fixed in 6.5.3-b15
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0244?
The severity of CVE-2026-0244 is classified as MEDIUM.
How do I fix CVE-2026-0244?
To fix CVE-2026-0244, upgrade to the fixed versions of Prisma SD-WAN ION, specifically 6.5.3-b15, 6.4.3-b8, or 6.3.6-b10.
What type of attack can CVE-2026-0244 be exploited for?
CVE-2026-0244 can be exploited for man-in-the-middle (MitM) attacks.
Which products are affected by CVE-2026-0244?
CVE-2026-0244 affects Palo Alto Networks Prisma SD-WAN and Prisma SD-WAN ION products.
What is the impact of CVE-2026-0244 on the network?
The impact of CVE-2026-0244 is that it allows an attacker to impersonate the controller, potentially compromising the integrity of network communications.