CVE-2019-17435: Medium severity palo alto networks globalprotect windows vulnerability
A Local Privilege Escalation vulnerability exists in the GlobalProtect Agent for Windows 5.0.3 and earlier, and GlobalProtect Agent for Windows 4.1.12 and earlier, in which the auto-update feature can allow for modification of a GlobalProtect Agent MSI installer package on disk before installation.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-17435?
CVE-2019-17435 is a Local Privilege Escalation vulnerability in the GlobalProtect Agent for Windows.
What versions of the GlobalProtect Agent for Windows are affected by CVE-2019-17435?
The GlobalProtect Agent for Windows versions 5.0.3 and earlier, and 4.1.12 and earlier are affected by CVE-2019-17435.
How does CVE-2019-17435 impact the affected software?
CVE-2019-17435 allows the auto-update feature to be exploited, allowing modification of the GlobalProtect Agent MSI installer package before installation.
What is the severity of CVE-2019-17435?
CVE-2019-17435 has a severity rating of medium, with a severity value of 5.5.
How can I learn more about CVE-2019-17435?
You can find more information about CVE-2019-17435 at the following reference: [https://security.paloaltonetworks.com/CVE-2019-17435](https://security.paloaltonetworks.com/CVE-2019-17435)