5.5
CVE-2020-2020
- EPSS 0.06%
- Veröffentlicht 09.12.2020 18:15:10
- Zuletzt bearbeitet 21.11.2024 05:24:28
- Quelle psirt@paloaltonetworks.com
- CVE-Watchlists
- Unerledigt
An improper handling of exceptional conditions vulnerability in Cortex XDR Agent allows a local authenticated Windows user to create files in the software's internal program directory that prevents the Cortex XDR Agent from starting. The exceptional condition is persistent and prevents Cortex XDR Agent from starting when the software or machine is restarted. This issue impacts: Cortex XDR Agent 5.0 versions earlier than 5.0.10; Cortex XDR Agent 6.1 versions earlier than 6.1.7; Cortex XDR Agent 7.0 versions earlier than 7.0.3; Cortex XDR Agent 7.1 versions earlier than 7.1.2.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Paloaltonetworks ≫ Cortex Xdr Agent Version >= 5.0 < 5.0.10
Paloaltonetworks ≫ Cortex Xdr Agent Version >= 6.1 < 6.1.7
Paloaltonetworks ≫ Cortex Xdr Agent Version >= 7.0 < 7.0.3
Paloaltonetworks ≫ Cortex Xdr Agent Version >= 7.1 < 7.1.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.06% | 0.179 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 2.1 | 3.9 | 2.9 |
AV:L/AC:L/Au:N/C:N/I:N/A:P
|
| psirt@paloaltonetworks.com | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
|
CWE-755 Improper Handling of Exceptional Conditions
The product does not handle or incorrectly handles an exceptional condition.