CVE-2024-9469

A problem with a detection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices enables a user with Windows non-administrative privileges to disable the agent. This issue may be leveraged by malware to disable the Cortex XDR agent and then to perform malicious activity.
References
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:paloaltonetworks:cortex_xdr_agent:*:*:*:*:critical_environment:*:*:*
cpe:2.3:a:paloaltonetworks:cortex_xdr_agent:8.3.0:*:*:*:-:*:*:*
cpe:2.3:a:paloaltonetworks:cortex_xdr_agent:8.4.0:*:*:*:-:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

15 Oct 2024, 18:38

Type Values Removed Values Added
References () https://security.paloaltonetworks.com/CVE-2024-9469 - () https://security.paloaltonetworks.com/CVE-2024-9469 - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CPE cpe:2.3:a:paloaltonetworks:cortex_xdr_agent:8.3.0:*:*:*:-:*:*:*
cpe:2.3:a:paloaltonetworks:cortex_xdr_agent:8.4.0:*:*:*:-:*:*:*
cpe:2.3:a:paloaltonetworks:cortex_xdr_agent:*:*:*:*:critical_environment:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
CWE CWE-754
First Time Microsoft windows
Paloaltonetworks
Paloaltonetworks cortex Xdr Agent
Microsoft

09 Oct 2024, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-09 17:15

Updated : 2024-10-15 18:38


NVD link : CVE-2024-9469

Mitre link : CVE-2024-9469


JSON object : View

Products Affected

paloaltonetworks

  • cortex_xdr_agent

microsoft

  • windows
CWE
CWE-754

Improper Check for Unusual or Exceptional Conditions