7.8

CVE-2026-0251

GlobalProtect App: Local Privilege Escalation Vulnerabilities

Multiple local privilege escalation vulnerabilities in the Palo Alto Networks GlobalProtect™ app allow a local user to escalate their privileges to NT AUTHORITY\SYSTEM on Windows and root on macOS and Linux. This enables a non-administrative user to execute arbitrary commands with administrative privileges.

The GlobalProtect app on iOS, Android, Chrome OS and GlobalProtect UWP app are not affected.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
PaloaltonetworksGlobalprotect SwPlatformlinux Version >= 6.0.0 < 6.0.11
PaloaltonetworksGlobalprotect SwPlatformmacos Version >= 6.0.0 < 6.0.13
PaloaltonetworksGlobalprotect SwPlatformwindows Version >= 6.0.0 < 6.0.13
PaloaltonetworksGlobalprotect SwPlatformmacos Version >= 6.2.0 < 6.2.8
PaloaltonetworksGlobalprotect SwPlatformwindows Version >= 6.2.0 < 6.2.8
PaloaltonetworksGlobalprotect SwPlatformlinux Version >= 6.3.0 < 6.3.3
PaloaltonetworksGlobalprotect SwPlatformmacos Version >= 6.3.0 < 6.3.3
PaloaltonetworksGlobalprotect SwPlatformwindows Version >= 6.3.0 < 6.3.3
PaloaltonetworksGlobalprotect Version6.2.8 Update- SwPlatformmacos
PaloaltonetworksGlobalprotect Version6.2.8 Update- SwPlatformwindows
PaloaltonetworksGlobalprotect Version6.2.8 Updateh1 SwPlatformmacos
PaloaltonetworksGlobalprotect Version6.2.8 Updateh7 SwPlatformmacos
PaloaltonetworksGlobalprotect Version6.2.8 Updateh7 SwPlatformwindows
PaloaltonetworksGlobalprotect Version6.3.3 Update- SwPlatformlinux
PaloaltonetworksGlobalprotect Version6.3.3 Update- SwPlatformmacos
PaloaltonetworksGlobalprotect Version6.3.3 Update- SwPlatformwindows
PaloaltonetworksGlobalprotect Version6.3.3 Updateh1 SwPlatformlinux
PaloaltonetworksGlobalprotect Version6.3.3 Updateh1 SwPlatformmacos
PaloaltonetworksGlobalprotect Version6.3.3 Updateh1 SwPlatformwindows
PaloaltonetworksGlobalprotect Version6.3.3 Updateh2 SwPlatformmacos
PaloaltonetworksGlobalprotect Version6.3.3 Updateh2 SwPlatformwindows
PaloaltonetworksGlobalprotect Version6.3.3 Updateh3 SwPlatformmacos
PaloaltonetworksGlobalprotect Version6.3.3 Updateh3 SwPlatformwindows
PaloaltonetworksGlobalprotect Version6.3.3 Updateh4 SwPlatformmacos
PaloaltonetworksGlobalprotect Version6.3.3 Updateh4 SwPlatformwindows
PaloaltonetworksGlobalprotect Version6.3.3 Updateh6 SwPlatformmacos
PaloaltonetworksGlobalprotect Version6.3.3 Updateh6 SwPlatformwindows
PaloaltonetworksGlobalprotect Version6.3.3 Updateh7 SwPlatformmacos
PaloaltonetworksGlobalprotect Version6.3.3 Updateh7 SwPlatformwindows
PaloaltonetworksGlobalprotect Version6.3.3 Updateh8 SwPlatformmacos
PaloaltonetworksGlobalprotect Version6.3.3 Updateh8 SwPlatformwindows
PaloaltonetworksGlobalprotect Version6.3.3 Updateh9 SwPlatformmacos
PaloaltonetworksGlobalprotect Version6.3.3 Updateh9 SwPlatformwindows
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.15% 0.049
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
psirt@paloaltonetworks.com 5.9 0 0
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:U/V:D/RE:M/U:Amber
CWE-426 Untrusted Search Path

The product searches for critical resources using an externally-supplied search path that can point to resources that are not under the product's direct control.

https://security.paloaltonetworks.com/CVE-2026-0251
Vendor Advisory