Beveiligingsadvies

CVE-2025-0117

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-03-12 18:35:35
Laatst bijgewerkt 2026-02-26 19:09:35
Toegewezen door palo_alto
CVSS-score 7.1
Status PUBLISHED

Beschrijving

A reliance on untrusted input for a security decision in the GlobalProtect app on Windows devices potentially enables a locally authenticated non-administrative Windows user to escalate their privileges to NT AUTHORITY\SYSTEM. GlobalProtect App on macOS, Linux, iOS, Android, Chrome OS and GlobalProtect UWP App are not affected.