CVE-2022-0028
Palo Alto Networks PAN-OS
A PAN-OS URL filtering policy misconfiguration could allow a network-based attacker to conduct reflected and amplified TCP denial-of-service (RDoS) attacks. The DoS attack would appear to originate from a Palo Alto Networks PA-Series (hardware), VM-Series (virtual) and CN-Series (container) firewall against an attacker-specified target. To be misused by an external attacker, the firewall configuration must have a URL filtering profile with one or more blocked categories assigned to a source zone that has an external facing interface. This configuration is not typical for URL filtering and,...
- CVSS
- 8.6
- EPSS
- 2.13% 80.1% percentile
- CISA KEV
- Listed
- Published
- 2022.08.11