Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-2431


An issue in the Palo Alto Networks GlobalProtect app enables a non-privileged user to disable the GlobalProtect app in configurations that allow a user to disable GlobalProtect with a passcode.


Published

2024-03-13T18:15:08.293

Last Modified

2025-09-26T19:11:17.373

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 5.5 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-269
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application paloaltonetworks globalprotect < 5.1.12 Yes
Application paloaltonetworks globalprotect ≤ 5.2.13 Yes
Application paloaltonetworks globalprotect < 6.0.4 Yes
Application paloaltonetworks globalprotect 6.1.0 Yes

References