


This vulnerability was disclosed in accordance with Randori’s vulnerability disclosure policy. Exploitation of PA-VM virtual devices in particular is made easier due to their lack of Address Space Layout Randomization (ASLR).VPN devices are attractive targets for malicious actors, and.Public exploit code is likely to surface as:.


This vulnerability affects PAN firewalls using the GlobalProtect Portal VPN and allows for unauthenticated remote code execution on vulnerable installations of the product. On NovemPalo Alto Networks (PAN) provided an update that patched CVE-2021-3064 which was discovered and disclosed by Randori.
