A local privilege escalation (PE) vulnerability exists in Palo Alto Networks Cortex XDR agent software on Windows that enables an authenticated local user with file creation privilege in the Windows root directory (such as C:) to execute a program with elevated privileges. This issue impacts all versions of Cortex XDR agent without content update 330 or a later content update version.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Cortex_xdr_agent | Paloaltonetworks | 6.1 (including) | 6.1 (including) |
Cortex_xdr_agent | Paloaltonetworks | 6.1-content_update330 (including) | 6.1-content_update330 (including) |
Cortex_xdr_agent | Paloaltonetworks | 6.1.4-content_update330 (including) | 6.1.4-content_update330 (including) |
Cortex_xdr_agent | Paloaltonetworks | 6.1.4-hotfix (including) | 6.1.4-hotfix (including) |
Cortex_xdr_agent | Paloaltonetworks | 6.1.5 (including) | 6.1.5 (including) |
Cortex_xdr_agent | Paloaltonetworks | 6.1.5-content_update330 (including) | 6.1.5-content_update330 (including) |
Cortex_xdr_agent | Paloaltonetworks | 6.1.5-hotfix (including) | 6.1.5-hotfix (including) |
Cortex_xdr_agent | Paloaltonetworks | 6.1.6 (including) | 6.1.6 (including) |
Cortex_xdr_agent | Paloaltonetworks | 6.1.6-content_update330 (including) | 6.1.6-content_update330 (including) |
Cortex_xdr_agent | Paloaltonetworks | 6.1.7 (including) | 6.1.7 (including) |
Cortex_xdr_agent | Paloaltonetworks | 6.1.7-content_update330 (including) | 6.1.7-content_update330 (including) |
Cortex_xdr_agent | Paloaltonetworks | 6.1.8 (including) | 6.1.8 (including) |
Cortex_xdr_agent | Paloaltonetworks | 6.1.8-content_update330 (including) | 6.1.8-content_update330 (including) |
Cortex_xdr_agent | Paloaltonetworks | 6.1.9 (including) | 6.1.9 (including) |
Cortex_xdr_agent | Paloaltonetworks | 6.1.9-content_update330 (including) | 6.1.9-content_update330 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.4.1 (including) | 7.4.1 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.4.1-content_update330 (including) | 7.4.1-content_update330 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.4.2 (including) | 7.4.2 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.4.2-content_update330 (including) | 7.4.2-content_update330 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.4.3 (including) | 7.4.3 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.4.3-content_update330 (including) | 7.4.3-content_update330 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.4.4 (including) | 7.4.4 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.4.4-content_update330 (including) | 7.4.4-content_update330 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.5 (including) | 7.5 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.5.1 (including) | 7.5.1 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.5.1-content_update330 (including) | 7.5.1-content_update330 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.5.2 (including) | 7.5.2 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.5.2-content_update330 (including) | 7.5.2-content_update330 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.5.3 (including) | 7.5.3 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.5.3-content_update330 (including) | 7.5.3-content_update330 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.6.1 (including) | 7.6.1 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.6.1-content_update330 (including) | 7.6.1-content_update330 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.6.2 (including) | 7.6.2 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.6.2-content_update330 (including) | 7.6.2-content_update330 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.7 (including) | 7.7 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.7-content_update330 (including) | 7.7-content_update330 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.7.1 (including) | 7.7.1 (including) |
Cortex_xdr_agent | Paloaltonetworks | 7.7.1-content_update330 (including) | 7.7.1-content_update330 (including) |