Beveiligingsadvies

CVE-2023-0001

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-02-08 17:20:20
Laatst bijgewerkt 2024-08-02 04:54:32
Toegewezen door palo_alto
CVSS-score 6.0
Status PUBLISHED

Beschrijving

An information exposure vulnerability in the Palo Alto Networks Cortex XDR agent on Windows devices allows a local system administrator to disclose the admin password for the agent in cleartext, which bad actors can then use to execute privileged cytool commands that disable or uninstall the agent.