{"document":{"category":"csaf_vex","csaf_version":"2.1","notes":[{"category":"summary","text":"Palo Alto Networks PSIRT provided VEX document. This document is autogenerated.","title":"PAN-OS: Session Token Disclosure Vulnerability"}],"publisher":{"category":"vendor","name":"Palo Alto Networks","namespace":"https://security.paloaltonetworks.com"},"title":"Palo Alto Networks PSIRT provided VEX document: CVE-2025-4614","distribution":{"text":"Copyright © 2024 Palo Alto Networks. All rights reserved.","tlp":{"label":"CLEAR","url":"https://www.first.org/tlp/"}},"tracking":{"current_release_date":"2026-03-11T22:24:09.202Z","generator":{"date":"2026-03-11T22:24:09.202Z","engine":{"name":"Vulnogram","version":"0.1.0-dev"}},"id":"CVE-2025-4614","initial_release_date":"2025-10-08T16:00:00.000Z","revision_history":[{"number":"1","date":"2025-10-08T09:00:00.000Z","summary":"Initial Publication"}],"status":"final","version":"1"}},"product_tree":{"branches":[{"name":"Palo Alto Networks","category":"vendor","branches":[{"name":"Cloud NGFW","category":"product_name","branches":[{"category":"product_version","name":"Cloud NGFW All","product":{"name":"Palo Alto Networks Cloud NGFW","product_id":"PANW-Cloud-NGFW-1"}}]},{"name":"PAN-OS","category":"product_name","branches":[{"category":"product_version_range","name":"vers:generic/PAN-OS>=12.1.0","product":{"name":"Palo Alto Networks PAN-OS","product_id":"PANW-PAN-OS-724"}},{"category":"product_version_range","name":"vers:generic/PAN-OS<11.2.8","product":{"name":"Palo Alto Networks PAN-OS","product_id":"PANW-PAN-OS-685"}},{"category":"product_version_range","name":"vers:generic/PAN-OS>=11.2.8","product":{"name":"Palo Alto Networks PAN-OS","product_id":"PANW-PAN-OS-685"}},{"category":"product_version_range","name":"vers:generic/PAN-OS<11.1.6-h21","product":{"name":"Palo Alto Networks PAN-OS","product_id":"PANW-PAN-OS-728"}},{"category":"product_version_range","name":"vers:generic/PAN-OS>=11.1.6-h21","product":{"name":"Palo Alto Networks PAN-OS","product_id":"PANW-PAN-OS-728"}},{"category":"product_version_range","name":"vers:generic/PAN-OS<10.2.17","product":{"name":"Palo Alto Networks PAN-OS","product_id":"PANW-PAN-OS-687"}},{"category":"product_version_range","name":"vers:generic/PAN-OS>=10.2.17","product":{"name":"Palo Alto Networks PAN-OS","product_id":"PANW-PAN-OS-687"}}]},{"name":"Prisma Access","category":"product_name","branches":[{"category":"product_version","name":"Prisma Access All","product":{"name":"Palo Alto Networks Prisma Access","product_id":"PANW-Prisma-Access-1"}}]}]}]},"vulnerabilities":[{"cve":"CVE-2025-4614","product_status":{"fixed":["PANW-PAN-OS-685","PANW-PAN-OS-728","PANW-PAN-OS-687"],"known_affected":["PANW-PAN-OS-685","PANW-PAN-OS-728","PANW-PAN-OS-687"],"known_not_affected":["PANW-Cloud-NGFW-1","PANW-PAN-OS-724","PANW-Prisma-Access-1"]},"notes":[{"category":"description","text":"An information disclosure vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to view session tokens of users authenticated to the firewall web UI. This may allow impersonation of users whose session tokens are leaked.  \n\nThe security risk posed by this issue is significantly minimized when CLI access is restricted to a limited group of administrators.\n\nCloud NGFW and Prisma® Access are not affected by this vulnerability."}],"references":[{"category":"external","summary":"NVD - CVE-2025-4614","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-4614"},{"category":"self","summary":"Palo Alto Networks Security Advisory CVE-2025-4614","url":"https://security.paloaltonetworks.com/CVE-2025-4614"}],"threats":[{"category":"impact","description":"An information disclosure vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to view session tokens of users authenticated to the firewall web UI. This may allow impersonation of users whose session tokens are leaked.  \n\nThe security risk posed by this issue is significantly minimized when CLI access is restricted to a limited group of administrators.\n\nCloud NGFW and Prisma® Access are not affected by this vulnerability."}],"scores":[{"cvss_v4":{"version":"4.0","attackVector":"NETWORK","attackComplexity":"LOW","attackRequirements":"NONE","privilegesRequired":"HIGH","userInteraction":"PASSIVE","vulnConfidentialityImpact":"LOW","subConfidentialityImpact":"LOW","vulnIntegrityImpact":"NONE","subIntegrityImpact":"NONE","vulnAvailabilityImpact":"NONE","subAvailabilityImpact":"NONE","Safety":"NOT_DEFINED","Automatable":"NO","Recovery":"USER","valueDensity":"CONCENTRATED","vulnerabilityResponseEffort":"MODERATE","providerUrgency":"AMBER","exploitMaturity":"UNREPORTED","baseSeverity":"MEDIUM","baseScore":4.8,"threatSeverity":"LOW","threatScore":1.1,"vectorString":"CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:P/VC:L/VI:N/VA:N/SC:L/SI:N/SA:N/E:U/AU:N/R:U/V:C/RE:M/U:Amber"},"products":["PANW-PAN-OS-685","PANW-PAN-OS-728","PANW-PAN-OS-687"]}]}]}