4

CVE-2026-0232

Cortex XDR Agent: Local Administrator can disable the agent on Windows

A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on Windows allows a local Windows administrator to disable the agent. This issue may be leveraged by malware to perform malicious activity without detection.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerPalo Alto Networks
Produkt Cortex XDR Agent
Default Statusunaffected
Version 9.1.0
Version < 5.10.14
Status unaffected
Version 9.0
Status unaffected
Version 8.9
Status unaffected
Version 8.7-CE
Status unaffected
HerstellerPalo Alto Networks
Produkt Cortex XDR Agent
Default Statusunaffected
Version 9.0
Version < 9.0.1
Status affected
Version 8.9
Version < 8.9.1
Status affected
Version 8.7-CE
Version < 8.7.101-CE
Status affected
Version 8.3-CE
Version < 8.3-CE-CU-2120
Status affected
Version 7.9-CE
Version < 7.9-CE-CU-2120
Status affected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.02% 0.052
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
psirt@paloaltonetworks.com 4 0 0
CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:U/V:D/RE:M/U:Amber
CWE-15 External Control of System or Configuration Setting

One or more system settings or configuration elements can be externally controlled by a user.