CVE-2023-0001
08.02.2023, 18:15
An information exposure vulnerability in the Palo Alto Networks Cortex XDR agent on Windows devices allows a local system administrator to disclose the admin password for the agent in cleartext, which bad actors can then use to execute privileged cytool commands that disable or uninstall the agent.Enginsight
| Vendor | Product | Version |
|---|---|---|
| paloaltonetworks | cortex_xdr_agent | 7.5 ≤ 𝑥 < 7.5.101 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration