Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-0002


A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices allows a local user to execute privileged cytool commands that disable or uninstall the agent.


Published

2023-02-08T18:15:11.683

Last Modified

2024-11-21T07:36:22.187

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.5 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-693
  • Type: Primary
    NVD-CWE-Other

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application paloaltonetworks cortex_xdr_agent < 5.0.12.22203 Yes
Application paloaltonetworks cortex_xdr_agent ≤ 7.5.101 Yes
Operating System microsoft windows - No

References