Skip to content
Attackers can force Palo Alto firewalls into maintenance mode

Attackers can force Palo Alto firewalls into maintenance mode

Heise.De January 15, 2026

Under certain conditions, attackers can exploit a vulnerability in PAN-OS and thus attack Palo Alto Networks firewalls. So far, according to the IT security company, there are no indications of attacks.

If attackers successfully exploit the DoS vulnerability (CVE-2026-0227 “ high ”), they can put devices into maintenance mode. In this state, it can be assumed that the firewall protection is bypassed. In a post, the developers explain that only PAN-OS NGFW and Prisma Access configurations with GlobalProtect gateway/portal enabled are vulnerable.

Cloud NGFW is reportedly already secured against the described attack. The following security patches have been released for PAN-OS:

This article was originally published in German . It was translated with technical assistance and editorially reviewed before publication.

Extracted Entities

Attack Types (1)

Companies (1)

CVEs (1)