criticalKEV
CVE-2024-3400
PAN-OS GlobalProtect command injection -> pre-auth RCE
- Severity
- critical
- Affected product
- PaloAlto GlobalProtect
- Affected versions
- PaloAlto GlobalProtect all versions before the fix
- Fixed in
- PaloAlto GlobalProtect vendor patch
- CISA KEV
- Listed as a known exploited vulnerability
- EPSS
- 94% chance of exploitation in the next 30 days
- Added to NewScan
- 2026-07-13
- Detected by
- NewScan — free, self-hosted
How NewScan reports it
APPLIANCE FINGERPRINT
NewScan fingerprints the PaloAlto GlobalProtect appliance and reports this CVE when the detected version falls inside the affected range below.
References
Scan for this yourself — local, in-band scanning is free.
Get NewScan (FREE) →