CVE-2026-0299
- EPSS 0.19%
- Veröffentlicht 13.08.2026 02:04:07
- Zuletzt bearbeitet 18.08.2026 15:04:46
Local privilege escalation vulnerabilities in the Palo Alto Networks GlobalProtect™ app enable a local user to escalate their privileges to NT AUTHORITY\SYSTEM on Windows, and root on macOS and Linux. This enables a non-administrative user to execute...
CVE-2026-0297
- EPSS 0.16%
- Veröffentlicht 13.08.2026 02:01:13
- Zuletzt bearbeitet 18.08.2026 15:04:46
A buffer overflow vulnerability exists in the Palo Alto Networks GlobalProtect™ app that enables a man-in-the-middle (MitM) attacker or a rogue gateway to disrupt system processes and potentially execute arbitrary code with elevated privileges (SYSTE...
CVE-2026-0295
- EPSS 0.08%
- Veröffentlicht 13.08.2026 01:57:22
- Zuletzt bearbeitet 18.08.2026 15:04:46
A race condition in the Palo Alto Networks GlobalProtect™ client on macOS enables a locally authenticated low-privileged attacker to escalate their privileges to root. The GlobalProtect app on Linux, Windows, iOS, Android, and Chrome OS is not affec...
CVE-2026-0267
- EPSS 0.1%
- Veröffentlicht 10.06.2026 20:31:37
- Zuletzt bearbeitet 23.07.2026 09:10:00
An information exposure vulnerability in the Palo Alto Networks GlobalProtect app on macOS enables a local user to learn the configured passcodes for disabling, disconnecting, or uninstalling the GlobalProtect app. After the passcode is known, the us...
CVE-2026-0249
- EPSS 0.11%
- Veröffentlicht 13.05.2026 19:16:59
- Zuletzt bearbeitet 14.07.2026 16:40:37
Multiple improper certificate validation vulnerabilities in the Palo Alto Networks GlobalProtect™ app enables an attacker to intercept encrypted communications and potentially compromise the endpoint. This can enable a local non-administrative operat...
CVE-2026-0250
- EPSS 0.39%
- Veröffentlicht 13.05.2026 18:26:51
- Zuletzt bearbeitet 14.07.2026 16:40:11
A buffer overflow vulnerability exists in the Palo Alto Networks GlobalProtect™ app that enables a man in the middle attacker to disrupt system processes and potentially execute arbitrary code with SYSTEM privileges. This vulnerability is triggered d...
CVE-2026-0251
- EPSS 0.15%
- Veröffentlicht 13.05.2026 18:20:01
- Zuletzt bearbeitet 14.07.2026 16:40:02
Multiple local privilege escalation vulnerabilities in the Palo Alto Networks GlobalProtect™ app allow a local user to escalate their privileges to NT AUTHORITY\SYSTEM on Windows and root on macOS and Linux. This enables a non-administrative user to ...
CVE-2025-4227
- EPSS 0.14%
- Veröffentlicht 13.06.2025 05:50:52
- Zuletzt bearbeitet 27.06.2025 16:49:37
An improper access control vulnerability in the Endpoint Traffic Policy Enforcement https://docs.paloaltonetworks.com/globalprotect/6-0/globalprotect-app-new-features/new-features-released-in-gp-app/endpoint-traffic-policy-enforcement feature of th...
CVE-2025-4232
- EPSS 0.42%
- Veröffentlicht 12.06.2025 23:22:34
- Zuletzt bearbeitet 27.06.2025 16:47:32
An improper neutralization of wildcards vulnerability in the log collection feature of Palo Alto Networks GlobalProtect™ app on macOS allows a non administrative user to escalate their privileges to root.
CVE-2025-0135
- EPSS 0.13%
- Veröffentlicht 14.05.2025 18:08:32
- Zuletzt bearbeitet 27.06.2025 16:50:37
An incorrect privilege assignment vulnerability in the Palo Alto Networks GlobalProtect™ App on macOS devices enables a locally authenticated non administrative user to disable the app. The GlobalProtect app on Windows, Linux, iOS, Android, Chrome O...