Description


An improper link resolution vulnerability in the Palo Alto Networks Cortex XDR agent on Windows devices allows a local attacker to read files on the system with elevated privileges when generating a tech support file.

Related CPE's


a

paloaltonetworks

cortex_xdr_agent

3

Weaknesses



CWE-59


CWE-59

CVSS impact metrics


CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

5.5 · Medium

  • CVSS V3.1

  • CVSS V3.0

  • CVSS V2.0

Information


Source identifier

[email protected]

Vulnerability status

Analyzed

Published

2022-09-14T17:15:10.110

3 years ago

Last modified

2022-09-17T01:32:05.897

3 years ago