PT-2024-7800 · Microsoft+1 · Windows+1

·

CVE-2024-9473

·

Published

2024-10-03

·

Updated

2024-10-17

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Palo Alto Networks GlobalProtect App versions prior to 6.2.5
Description A privilege escalation issue in the Palo Alto Networks GlobalProtect app on Windows allows a locally authenticated non-administrative Windows user to escalate their privileges to NT AUTHORITY/SYSTEM through the use of the repair functionality offered by the .msi file used to install GlobalProtect.
Recommendations Update to version 6.2.5 to resolve the issue. As a temporary workaround, consider disabling the repair functionality offered by the .msi file used to install GlobalProtect until a patch is available. Restrict access to the .msi file used to install GlobalProtect to minimize the risk of exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2024-09300
CVE-2024-9473

Affected Products

Palo Alto Networks Globalprotect
Windows