Metrics
Affected Vendors & Products
Solution
This issue is fixed in GlobalProtect app 5.1.10 on Windows and MacOS, GlobalProtect app 5.2.9 on Windows and MacOS, and all later GlobalProtect app versions with the ‘force-disable-sso’ app setting. Set ‘force-disable-sso’ to ‘yes’ to prevent unintended transmission of the local user credentials as described here: https://docs.paloaltonetworks.com/globalprotect/10-1/globalprotect-admin/globalprotect-apps/deploy-app-settings-transparently/customizable-app-settings/app-behavior-options.html
Workaround
There are no known workarounds for this issue.
Link | Providers |
---|---|
https://security.paloaltonetworks.com/CVE-2022-0018 |
![]() ![]() |
No history.

Status: PUBLISHED
Assigner: palo_alto
Published:
Updated: 2024-09-16T23:36:47.780Z
Reserved: 2021-12-28T00:00:00
Link: CVE-2022-0018

No data.

Status : Modified
Published: 2022-02-10T18:15:08.627
Modified: 2024-11-21T06:37:49.727
Link: CVE-2022-0018

No data.

No data.