Vulnerabilities · 189 days ago

PAN‑OS, Prisma SD‑WAN SSH Downgrade Exposes Admin Sessions

PAN‑OS and Prisma SD‑WAN ION devices are affected by Terrapin (CVE-2023-48795). An attacker intercepting SSH traffic can downgrade client connections to force weaker client-auth algorithms and expose administrative sessions; vendor rates severity Medium.

CVE-2023-48795

NVD KEV

CVSS 5.9 MEDIUM: the SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows… EPSS 93% (100th percentile).

Timeline

Sources

1 source covering this story

Entities

Vendor digest: Palo Alto Networks

Part of the PlainSec briefing for 2026-03-10

Editions

Related stories