A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices allows a local low privileged Windows user to disrupt some functionality of the agent. However, they are not able to disrupt Cortex XDR agent protection mechanisms using this vulnerability.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-47037 | A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices allows a local low privileged Windows user to disrupt some functionality of the agent. However, they are not able to disrupt Cortex XDR agent protection mechanisms using this vulnerability. |
Fixes
Solution
This issue is fixed in Cortex XDR agent 7.9.102-CE, Cortex XDR agent 8.1.2, Cortex XDR agent 8.2.1, and all later Cortex XDR agent versions.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://security.paloaltonetworks.com/CVE-2024-5905 |
|
History
Wed, 07 Aug 2024 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Paloaltonetworks
Paloaltonetworks cortex Xdr Agent |
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:a:paloaltonetworks:cortex_xdr_agent:*:*:*:*:*:*:*:* cpe:2.3:a:paloaltonetworks:cortex_xdr_agent:*:*:*:*:content_update:*:*:* |
|
| Vendors & Products |
Paloaltonetworks
Paloaltonetworks cortex Xdr Agent |
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: palo_alto
Published:
Updated: 2024-08-01T21:25:03.270Z
Reserved: 2024-06-12T15:27:53.779Z
Link: CVE-2024-5905
Updated: 2024-08-01T21:25:03.270Z
Status : Modified
Published: 2024-06-12T17:15:52.847
Modified: 2024-11-21T09:48:33.170
Link: CVE-2024-5905
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD