← Back

CVE-2026-0292

nvd nist
Published: Aug 13, 2026Modified: Sep 9, 2026

JSON object

Loading...
2.1
Vector
CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:L/SC:H/SI:H/SA:L/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:A/V:C/RE:M/U:Amber
Show more
CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:L/SC:H/SI:H/SA:L/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:A/V:C/RE:M/U:AmberShow less
Source: psirt@paloaltonetworks.com (Secondary)

Description

An authentication bypass vulnerability in the network driver of Palo Alto Networks Prisma® Access Agent on Windows enables a local administrator to bypass security inspection, subsequently allowing them to inject and intercept arbitrary network traffic. The Prisma Access Agent on Linux, macOS, iOS, Android, and Chrome OS is not affected.

Affected (1)

Prisma Access Agent
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 26.3
Running on/withPlatform Versions
Microsoft
Windows
All versions

References (1)

Source: psirt@paloaltonetworks.com
Vendor Advisory

Timeline

No history available yet.