Vulnerability Description
An information exposure vulnerability in the Palo Alto Networks Cortex XDR agent on Windows devices allows a local system administrator to disclose the admin password for the agent in cleartext, which bad actors can then use to execute privileged cytool commands that disable or uninstall the agent.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Paloaltonetworks | Cortex Xdr Agent | >= 7.5, < 7.5.101 |
| Microsoft | Windows | - |
Related Weaknesses (CWE)
References
- https://security.paloaltonetworks.com/CVE-2023-0001Vendor Advisory
- https://security.paloaltonetworks.com/CVE-2023-0001Vendor Advisory
FAQ
What is CVE-2023-0001?
CVE-2023-0001 is a vulnerability with a CVSS score of 6.0 (MEDIUM). An information exposure vulnerability in the Palo Alto Networks Cortex XDR agent on Windows devices allows a local system administrator to disclose the admin password for the agent in cleartext, which...
How severe is CVE-2023-0001?
CVE-2023-0001 has been rated MEDIUM with a CVSS base score of 6.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-0001?
Check the references section above for vendor advisories and patch information. Affected products include: Paloaltonetworks Cortex Xdr Agent, Microsoft Windows.