CVE-2025-0132

MEDIUM

Palo Alto Networks Cortex XDR - DoS

Title source: llm
STIX 2.1

Description

A missing authentication vulnerability in Palo Alto Networks Cortex XDR® Broker VM allows an unauthenticated user to disable certain internal services on the Broker VM.  The attacker must have network access to the Broker VM to exploit this issue.

References (1)

Core 1
Core References
Various Sources vendor-advisory
https://security.paloaltonetworks.com/CVE-2025-0132

Scores

CVSS v4 6.9
EPSS 0.0037
EPSS Percentile 28.9%
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:U/V:C/RE:M/U:Amber

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-306
Status published
Products (1)
Palo Alto Networks/Cortex XDR Broker VM 26.0.0 - 26.0.119
Published May 14, 2025
Tracked Since Feb 18, 2026