Back to search
CVE-2024-5907
Published: Jun 12, 2024
Modified: Aug 1, 2024
PUBLISHED
Description
A privilege escalation (PE) vulnerability in the Palo Alto Networks Cortex XDR agent on Windows devices enables a local user to execute programs with elevated privileges. However, execution does require the local user to successfully exploit a race condition, which makes this vulnerability difficult to exploit.
| Vendor | Product | Versions |
|---|---|---|
Palo Alto Networks | Cortex XDR Agent | affected 7.9-CE - < 7.9.102-CEaffected 8.1.0affected 8.2.0 - < 8.2.3affected 8.3.0 - < 8.3.1unaffected 8.4.0 |
Weaknesses (CWE)
References
https://security.paloaltonetworks.com/CVE-2024-5907
vendor-advisory
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now