CVE Database
/

CVE-2024-5921

Back to search

CVE-2024-5921

Published: Nov 27, 2024

Modified: Feb 20, 2025

PUBLISHED

Description

An insufficient certification validation issue in the Palo Alto Networks GlobalProtect app enables attackers to connect the GlobalProtect app to arbitrary servers. This can enable a local non-administrative operating system user or an attacker on the same subnet to install malicious root certificates on the endpoint and subsequently install malicious software signed by the malicious root certificates on that endpoint. Please subscribe to our RSS feed https://security.paloaltonetworks.com/rss.xml to be alerted to new updates to this and other advisories.

VendorProductVersions

Palo Alto Networks

GlobalProtect App

affected
6.3.0 - < 6.3.2
affected
6.2.0 - < 6.2.6
affected
6.1.0

Palo Alto Networks

GlobalProtect App

affected
6.3.0 - < 6.3.2
affected
6.2.0 - < 6.2.6-c857
affected
6.1.0

Palo Alto Networks

GlobalProtect App

affected
6.2.0 - < 6.2.1-c31
affected
6.1.0

Palo Alto Networks

GlobalProtect App

affected
6.1.0 - < 6.1.6

Palo Alto Networks

GlobalProtect App

affected
6.1.0 - < 6.1.7

Palo Alto Networks

GlobalProtect App

unaffected
6.0.0
unaffected
5.1.0

Palo Alto Networks

GlobalProtect App

affected
6.2.0 - < 6.2.6

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now