CVE Vulnerabilities

CVE-2020-2020

Improper Handling of Exceptional Conditions

Published: Dec 09, 2020 | Modified: Dec 11, 2020
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

An improper handling of exceptional conditions vulnerability in Cortex XDR Agent allows a local authenticated Windows user to create files in the softwares internal program directory that prevents the Cortex XDR Agent from starting. The exceptional condition is persistent and prevents Cortex XDR Agent from starting when the software or machine is restarted. This issue impacts: Cortex XDR Agent 5.0 versions earlier than 5.0.10; Cortex XDR Agent 6.1 versions earlier than 6.1.7; Cortex XDR Agent 7.0 versions earlier than 7.0.3; Cortex XDR Agent 7.1 versions earlier than 7.1.2.

Weakness

The product does not handle or incorrectly handles an exceptional condition.

Affected Software

Name Vendor Start Version End Version
Cortex_xdr_agent Paloaltonetworks 5.0 (including) 5.0.10 (excluding)
Cortex_xdr_agent Paloaltonetworks 6.1 (including) 6.1.7 (excluding)
Cortex_xdr_agent Paloaltonetworks 7.0 (including) 7.0.3 (excluding)
Cortex_xdr_agent Paloaltonetworks 7.1 (including) 7.1.2 (excluding)

References