Impact
Palo Alto Networks GlobalProtect app contains a local privilege escalation flaw that permits a non‑administrative user to achieve SYSTEM on Windows or root on Linux and macOS. By exploiting this weakness, an attacker can run arbitrary commands with elevated privileges, compromising system integrity.
Affected Systems
Affected versions include GlobalProtect 6.0.0‑6.0.14, 6.2.0‑6.2.8‑h13, and 6.3.0‑6.3.3‑h14 on Linux, macOS, and Windows. The app on iOS, Android, and Chrome OS is not impacted.
Risk and Exploitability
The CVSS score of 5.9 indicates moderate severity. No EPSS data is available and the vulnerability is not listed in the CISA KEV catalog, suggesting limited widespread exploitation to date. Attack requires local access to a device running one of the vulnerable app versions and is not mitigated by any workaround.
OpenCVE Enrichment