CVE-2024-5909

A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices allows a low privileged local Windows user to disable the agent. This issue may be leveraged by malware to disable the Cortex XDR agent and then to perform malicious activity.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:paloaltonetworks:cortex_xdr_agent:*:*:*:*:critical_environment:windows:*:*
cpe:2.3:a:paloaltonetworks:cortex_xdr_agent:*:*:*:*:*:windows:*:*
cpe:2.3:a:paloaltonetworks:cortex_xdr_agent:*:*:*:*:*:windows:*:*

History

No history.

Information

Published : 2024-06-12 17:15

Updated : 2024-11-21 09:48


NVD link : CVE-2024-5909

Mitre link : CVE-2024-5909

CVE.ORG link : CVE-2024-5909


JSON object : View

Products Affected

paloaltonetworks

  • cortex_xdr_agent
CWE
CWE-269

Improper Privilege Management