CVE Database
/

CVE-2026-0251

Back to search

CVE-2026-0251

Published: May 13, 2026

Modified: May 14, 2026

PUBLISHED

Description

Multiple local privilege escalation vulnerabilities in the Palo Alto Networks GlobalProtect™ app allow a local user to escalate their privileges to NT AUTHORITY\SYSTEM on Windows and root on macOS and Linux. This enables a non-administrative user to execute arbitrary commands with administrative privileges. The GlobalProtect app on iOS, Android, Chrome OS and GlobalProtect UWP app are not affected.

VendorProductVersions

Palo Alto Networks

GlobalProtect App

affected
6.3.0 - < 6.3.3-h9 (6.3.3-999)
affected
6.2.0 - < 6.2.8-h10 (6.2.8-948)
affected
6.0.0 - < 6.0.13

Palo Alto Networks

GlobalProtect App

affected
6.3.0 - < 6.3.3-h9 (6.3.3-999)
affected
6.2.0 - < 6.2.8-h10 (6.2.8-948)
affected
6.0.0 - < 6.0.13

Palo Alto Networks

GlobalProtect App

affected
6.3.0 - < 6.3.3-h2 (6.3.3-42)
affected
6.0.0 - < 6.0.11

Palo Alto Networks

Global Protect App

unaffected
All

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now