Lucene search

K
cvePalo_altoCVE-2024-5905
HistoryJun 12, 2024 - 5:15 p.m.

CVE-2024-5905

2024-06-1217:15:52
CWE-346
palo_alto
web.nvd.nist.gov
34
palo alto networks
cortex xdr
windows
agent
protection
flaw
vulnerability

CVSS3

4.4

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

LOW

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L

CVSS4

2

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:N/SC:N/VI:L/SI:N/VA:L/SA:N/AU:Y/U:Amber/R:U/V:D/RE:M

AI Score

6.3

Confidence

Low

EPSS

0

Percentile

9.0%

A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices allows a local low privileged Windows user to disrupt some functionality of the agent. However, they are not able to disrupt Cortex XDR agent protection mechanisms using this vulnerability.

Affected configurations

Nvd
Vulners
Node
paloaltonetworkscortex_xdr_agentRange7.9.07.9.102content_update
OR
paloaltonetworkscortex_xdr_agentRange8.18.1.2
OR
paloaltonetworkscortex_xdr_agentRange8.28.2.1
VendorProductVersionCPE
paloaltonetworkscortex_xdr_agent*cpe:2.3:a:paloaltonetworks:cortex_xdr_agent:*:*:*:*:content_update:*:*:*
paloaltonetworkscortex_xdr_agent*cpe:2.3:a:paloaltonetworks:cortex_xdr_agent:*:*:*:*:*:*:*:*

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "platforms": [
      "Windows"
    ],
    "product": "Cortex XDR Agent",
    "vendor": "Palo Alto Networks",
    "versions": [
      {
        "changes": [
          {
            "at": "7.9.102-CE",
            "status": "unaffected"
          }
        ],
        "lessThan": "7.9.102-CE",
        "status": "affected",
        "version": "7.9-CE",
        "versionType": "custom"
      },
      {
        "changes": [
          {
            "at": "8.1.2",
            "status": "unaffected"
          }
        ],
        "lessThan": "8.1.2",
        "status": "affected",
        "version": "8.1.0",
        "versionType": "custom"
      },
      {
        "changes": [
          {
            "at": "8.2.1",
            "status": "unaffected"
          }
        ],
        "lessThan": "8.2.1",
        "status": "affected",
        "version": "8.2.0",
        "versionType": "custom"
      },
      {
        "status": "unaffected",
        "version": "8.3.0"
      },
      {
        "status": "unaffected",
        "version": "8.4.0"
      }
    ]
  }
]

CVSS3

4.4

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

LOW

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L

CVSS4

2

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:N/SC:N/VI:L/SI:N/VA:L/SA:N/AU:Y/U:Amber/R:U/V:D/RE:M

AI Score

6.3

Confidence

Low

EPSS

0

Percentile

9.0%

Related for CVE-2024-5905