← Back

CVE-2024-9469

nvd nist
Published: Oct 9, 2024Modified: Oct 15, 2024

JSON object

Loading...
5.7
Vector
CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:U/V:D/RE:M/U:Amber
Show more
CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:U/V:D/RE:M/U:AmberShow less
Source: psirt@paloaltonetworks.com (Secondary)

Description

A problem with a detection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices enables a user with Windows non-administrative privileges to disable the agent. This issue may be leveraged by malware to disable the Cortex XDR agent and then to perform malicious activity.

Affected (3)

Cortex Xdr Agent
Configuration A
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Paloaltonetworks
From 7.9 to 7.9.102
Version 8.3.0
Version 8.4.0
Running on/withPlatform Versions
Microsoft
Windows
All versions

References (1)

Source: psirt@paloaltonetworks.com
Vendor Advisory

Timeline

No history available yet.