CVE-2026-0250
A buffer overflow vulnerability exists in the Palo Alto Networks GlobalProtect™ app that enables a man in the middle attacker to disrupt system processes and potentially execute arbitrary code with...
Affects 0 products across 4 vendors.
Software writes data past buffer boundaries, corrupting memory and potentially enabling code execution.
A low severity vulnerability affects Gateway systems (CVE-2026-0250). No public exploit code is currently available. Review vendor advisories and apply patches during the next maintenance window.
BSID: BS-2026-GLOBAL-059144-I • Model: rule-based-v1 • Confidence: LOW
Is this CVE in your environment?
BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.
Check My Environment →What is CVE-2026-0250?
What is the CVSS score for CVE-2026-0250?
Is CVE-2026-0250 actively exploited?
How do I remediate CVE-2026-0250?
What systems are affected by CVE-2026-0250?
| CVE ID | CVE-2026-0250 |
|---|---|
| BSID | BS-2026-GLOBAL-059144-I BreachSpider Global ID |
| CVSS Vector | CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H |
| Published | 2026-05-13 |
| Last Modified | 2026-07-14 |
| ICS Relevance | 70% |
| Weakness (CWE) | |
| Domains | |
| Source | NVD |
A buffer overflow vulnerability exists in the Palo Alto Networks GlobalProtect™ app that enables a man in the middle attacker to disrupt system processes and potentially execute arbitrary code with SYSTEM privileges. This vulnerability is triggered during the processing of requests and responses exchanged between Portal and Gateway. The GlobalProtect app on iOS is not affected.
Source: NIST NVD / MITRE CVE Database
Vulnerability details: A buffer overflow vulnerability exists in the Palo Alto Networks GlobalProtect™ app that enables a man in the middle attacker to disrupt system processes and potentially execute arbitrary code with SYSTEM privileges. This vulnerability is triggered during the processing of requests and responses exchanged between Portal and Gateway. The GlobalProtect app on iOS is not affected. CVSS vector: Not available.
Exploitation Likelihood: MINIMAL
| Vendor | Product | Fixed Version |
|---|---|---|
| Gateway | — | — |
| Palo Alto | — | — |
| Palo Alto Networks | — | — |
| Processing | — | — |
No patch URL on record. Monitor vendor security advisories directly.
| CISA KEV | Not in KEV catalog |
|---|---|
| Public Exploit | Not confirmed |
| PoC Code | Not confirmed |
SAGE Enrichment Record — provenance & audit hash
| Model | rule-based-v1 |
|---|---|
| Confidence | LOW |
| Enriched At | 2026-05-24 |
| SHA-512 Audit Hash | c0e5f3ce7ceea690fb5ef3f45da0195c78c04a15030d6544d3d113d233c072f493fb1b4f04740db5413a5db0edab2c001b3a63930fc12986cdd89f192d200e63 |
ICS/OT Vulnerability Intelligence for Your Environment
BreachSpider monitors 353,228 CVEs across ICS/OT vendors. SAGE-enriched alerts with virtual patches, NERC-CIP mapping, and PSIRT contacts delivered to your SIEM in minutes.
Join free →