imPC@ndo IT

Tracker / CVE-2024-9473

CVE-2024-9473

High 7.8

A privilege escalation vulnerability in the Palo Alto Networks GlobalProtect app on Windows allows a locally authenticated non-administrative Windows user to escalate their privileges to NT AUTHORITY/SYSTEM through the use of the repair functionality offered by the .msi file used to install GlobalProtect.

Affected products and versions

paloaltonetworks globalprotect
paloaltonetworks globalprotect · 5.1 → 6.2.5

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References