H-ISAC TLP White Vulnerability Bulletin Palo Alto Patches Two High-Severity Flaws (CVE-2025-0108, CVE-2025-0110)

February 13, 2025

CVE-2025-0108 is a PAN-OS flaw that allows unauthenticated attackers with network access to bypass authentication, potentially compromising the integrity and confidentiality of the system. The flaw could also lead to remote code execution when chained with other flaws. The flaw has a CVSS score of 7.8.

For help with Cybersecurity and Risk Advisory Services exclusively for AHA members, contact:

John Riggi

National Advisor for Cybersecurity and Risk, AHA

jriggi@aha.org

(O) +1 202 626 2272