Description
A problem with a detection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices enables a user with Windows non-administrative privileges to disable the agent. This issue may be leveraged by malware to disable the Cortex XDR agent and then to perform malicious activity.
Problem types
CWE-754: Improper Check for Unusual or Exceptional Conditions
Product status
7.9 (custom) before 7.9.102-CE
8.3 (custom) before 8.3.1
8.3-CE
8.4 (custom) before 8.4.1
8.5
8.6
Timeline
| 2024-10-09: | Initial publication |
Credits
Orange Cyberdefense Switzerland's Research Team
References
security.paloaltonetworks.com/CVE-2024-9469
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.