imPC@ndo IT

Tracker / CVE-2023-3280

CVE-2023-3280

Medium 5.5

A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices allows a local user to disable the agent.

Affected products and versions

paloaltonetworks cortex_xdr_agent
paloaltonetworks cortex_xdr_agent · 5.0 → 5.0.12.22203
paloaltonetworks cortex_xdr_agent · 7.9.0 → 7.9.101
paloaltonetworks cortex_xdr_agent · 7.9.0 → 7.9.3
paloaltonetworks cortex_xdr_agent · 8.0.0 → 8.0.2

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References