TechForge

19th February 2025

The US CISA has added two critical flaws affecting Palo Alto Networks and SonicWall to its Known Exploited Vulnerabilities (KEV) Catalog.

The vulnerabilities are:

  • CVE-2025-0108: Palo Alto Networks PAN-OS Authentication Bypass Vulnerability  
  • CVE-2024-53704: SonicWall SonicOS SSLVPN Improper Authentication Vulnerability  

Cybersecurity firm GreyNoise has detected a sharp surge in malicious activity exploiting CVE-2025-0108, an authentication bypass affecting Palo Alto Networks’ PAN-OS.

GreyNoise has observed traffic from 25 malicious IPs attempting exploitation, up from just two on 13 February. The top origin countries of attack traffic are the US, Germany, and the Netherlands.

Palo Alto Networks has confirmed the vulnerability’s active exploitation and categorised it as “Highest Urgency” for defenders. The flaw allows unauthenticated attackers to execute specific PHP scripts, potentially gaining unauthorised access to systems.

Organisations relying on PAN-OS firewalls are advised to immediately patch their systems, restrict access to management interfaces, and monitor exploitation trends.  

The KEV Catalog was created under Binding Operational Directive (BOD) 22-01, which mandates Federal Civilian Executive Branch (FCEB) agencies to address high-risk vulnerabilities by set remediation deadlines.

While the directive is legally binding only for FCEB agencies, CISA is urging all organisations to adopt proactive vulnerability management to mitigate cyber risks.  

CISA’s updates to the KEV Catalog demonstrate the urgency of staying ahead of evolving cyber threats. Organisations using Palo Alto or SonicWall solutions should take immediate action to minimise their exposure—delayed remediation could leave systems vulnerable to malicious actors.

(Photo by Marcel Eberle)

See also: National Audit Office: Public services face ‘severe’ cyber risks

Want to learn more about cybersecurity and the cloud from industry leaders? Check out Cyber Security & Cloud Expo taking place in Amsterdam, California, and London. The comprehensive event is co-located with other leading events including Digital Transformation Week, IoT Tech Expo, Blockchain Expo, and AI & Big Data Expo.

Explore other upcoming enterprise technology events and webinars powered by TechForge here.

About the Author

Senior Editor

Ryan Daws is a senior editor at TechForge Media with over a decade of experience in crafting compelling narratives and making complex topics accessible. His articles and interviews with industry leaders have earned him recognition as a key influencer by organisations like Onalytica. Under his leadership, publications have been praised by analyst firms such as Forrester for their excellence and performance. Connect with him on X (@gadget_ry), Bluesky (@gadgetry.bsky.social), and/or Mastodon (@gadgetry@techhub.social)

Related

Aerospacelab wins European IRIS² satellite contract

11th September 2026

Eutelsat and Skynopy deploy Global AKAR satellite ground network

10th September 2026

AI agent libraries risk becoming telecom’s new OSS trap

9th September 2026

UK commits £7.8B to orbital assets and space strategy

8th September 2026

Join our Community

Subscribe now to get all our premium content and latest tech news delivered straight to your inbox

Popular

Customer engagement and billing are vital to a CSP’s success

9032 view(s)

T-Mobile and Ericsson test AI-RAN on live 5G Advanced network

1499 view(s)

AST SpaceMobile targets beta D2D service with next BlueBird launch

1108 view(s)

Ericsson adds AI in RAN software for 5G network optimisation

1068 view(s)

Subscribe

All our premium content and latest tech news delivered straight to your inbox

This field is for validation purposes and should be left unchanged.