Forum Discussion
Component Installs Require Paranoid Checks (DEPRECATED)
We've just recently configured remote scanning for Palo-Alto Firewalls, using credentials. Scans operate fine, credentials confirmed (yes) - but was seeing no findings, which we assumed was good! Then reading up, we turned on Paranoid mode - and suddenly there's 19 Critical and High findings. None of these are 'potential false positives' every single one is a genuine vulnerability linked to a CVE AND a fix pack by Palo-Alto.
WHY on earth where these all hidden by default? This is a very strange and disappointing choice - Paranoid mode should NOT be required to show basic and actual findings (Palo Alto Networks PAN-OS 10.2.x / 11.1.x / 11.2.x / 12.1.x Vulnerability).
Please reconsider this move or at least refine the choice, clarifying "Required for PA devices" etc