An unquoted search path vulnerability in the Windows release of Global Protect Agent allows an authenticated local user with file creation privileges on the root of the OS disk (C:\) or to Program Files directory to gain system privileges. This issue affects Palo Alto Networks GlobalProtect Agent 5.0 versions prior to 5.0.5; 4.1 versions prior to 4.1.13 on Windows;
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
paloaltonetworks globalprotect |