PT-2022-12962 · Palo Alto Networks · Palo Alto Networks Cortex Xdr Agent

Diego García

·

Published

2022-09-14

·

Updated

2022-09-17

·

CVE-2022-0029

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Palo Alto Networks Cortex XDR agent (affected versions not specified)
Description An improper link resolution issue in the Palo Alto Networks Cortex XDR agent on Windows devices allows a local attacker to read files on the system with elevated privileges when generating a tech support file.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Link Following

Weakness Enumeration

Related Identifiers

CVE-2022-0029

Affected Products

Palo Alto Networks Cortex Xdr Agent