A problem with a detection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices enables a user with Windows administrator privileges to disable the agent. This issue may be leveraged by malware to disable the Cortex XDR agent and then to perform malicious activity.
2024-09-11T17:15:14.487
2024-10-15T18:38:32.260
Analyzed
CVSSv3.1: 4.4 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | paloaltonetworks | cortex_xdr_agent | 7.9.102 | Yes |
Operating System | microsoft | windows | - | No |