Description
A privilege escalation vulnerability in the Palo Alto Networks GlobalProtect app on Windows allows a locally authenticated non-administrative Windows user to escalate their privileges to NT AUTHORITY/SYSTEM through the use of the repair functionality offered by the .msi file used to install GlobalProtect.
Problem types
CWE-250 Execution with Unnecessary Privileges
Product status
5.1
6.0
6.1
6.2.0 (custom) before 6.2.5
6.3
Timeline
| 2024-10-09: | Initial publication |
Credits
Michael Baer of SEC Consult Vulnerability Lab
Marc Barrantes of KPMG Spain
References
seclists.org/fulldisclosure/2024/Oct/2
security.paloaltonetworks.com/CVE-2024-9473
sec-consult.com/...ller-in-palo-alto-networks-globalprotect/