Vulnerabilities & Exploits

PAN‑OS, Prisma SD‑WAN SSH Downgrade Exposes Admin Sessions

PAN‑OS and Prisma SD‑WAN ION devices are affected by Terrapin (CVE-2023-48795). An attacker intercepting SSH traffic can downgrade client connections to force weaker client-auth algorithms and expose administrative sessions; vendor rates severity Medium.

1 source · Mar 10

CVE-2023-48795

NVD KEV

CVSS 5.9 MEDIUM: the SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows… EPSS 93% (100th percentile).

Timeline

Sources

Vendor digest: Palo Alto Networks

Part of the PlainSec briefing for 2026-03-10

Every edition of this story: PAN‑OS, Prisma SD‑WAN SSH Downgrade Exposes Admin Sessions

More from today