PT-2017-14250 · Palo Alto Networks · Globalprotect Agent

Brandon Mccann

+1

·

Publicado

2017-12-11

·

Atualizado

2020-02-17

·

CVE-2017-15870

CVSS v2.0

7.2

Alta

VetorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Palo Alto Networks GlobalProtect Agent versions prior to 4.0.3
Description The issue allows attackers with administration rights on the local station to gain SYSTEM privileges via vectors involving "image path execution hijacking."
Recommendations For versions prior to 4.0.3, update to version 4.0.3 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2017-15870

Produtos afetados

Globalprotect Agent