Impact
A local privilege escalation flaw exists in Palo Alto Networks Prisma Browser on macOS that allows a locally authenticated administrator to elevate privileges to root. The weakness is classified under CWE‑269, meaning an attacker can bypass privilege limits, potentially affecting the confidentiality, integrity, or availability of the host. The impact is limited to machines where Prisma Browser is installed and requires an administrator with filesystem access.
Affected Systems
The affected product is Palo Alto Networks Prisma Browser running on macOS. Only installations of Prisma Browser on macOS are vulnerable; other vendors, platforms, or product versions are unaffected according to the vendor data.
Risk and Exploitability
The CVSS score is 2, reflecting a low overall severity, and the EPSS score is less than 1%, indicating a very low probability of exploitation at the time of analysis. The vulnerability is not listed in CISA KEV, so no known active exploitation is reported. The likely attack vector is local: it requires a user who is already authenticated as an administrator on the macOS system and able to access the local filesystem. Although the exploit potential is low, the ability to execute root‑level actions warrants remediation.
OpenCVE Enrichment