Multiple buffer overflow vulnerabilities in the User-ID Terminal Server Agent (TSA) component of Palo Alto Networks PAN-OS software allow an unauthenticated attacker with network access to cause a denial of service (DoS) condition or potentially execute arbitrary code by sending specially crafted network traffic.
The security risk posed by this issue is minimized when the User-ID Terminal Server Agent connectivity is restricted to only trusted internal IP addresses according to our recommended best practice deployment guidelines https://docs.paloaltonetworks.com/ngfw/help/10-2/user-identification/device-user-identification-terminal-services-agents#:~:text=To%20minimize%20security%20risk%2C%20restrict%20TS%20Agent%20connectivity%20to%20trusted%20internal%20IP%20addresses%20only. .
Panorama is not impacted by this vulnerability.
References
| Link | Resource |
|---|---|
| https://security.paloaltonetworks.com/ | Vendor Advisory |
| https://cert-portal.siemens.com/productcert/html/ssa-104023.html |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
History
No history.
Information
Published : 2026-07-08 21:16
Updated : 2026-08-11 13:17
NVD link : CVE-2026-0288
Mitre link : CVE-2026-0288
CVE.ORG link : CVE-2026-0288
JSON object : View
Products Affected
paloaltonetworks
- pan-os
CWE
CWE-787
Out-of-bounds Write
