CVE-2022-0012: Cortex XDR Agent: Local Arbitrary File Deletion Vulnerability
An improper link resolution before file access vulnerability exists in the Palo Alto Networks Cortex XDR agent on Windows platforms that enables a local user to delete arbitrary system files and impact the system integrity or cause a denial of service condition. This issue impacts: Cortex XDR agent 5.0 versions earlier than Cortex XDR agent 5.0.12; Cortex XDR agent 6.1 versions earlier than Cortex XDR agent 6.1.9; Cortex XDR agent 7.2 versions earlier than Cortex XDR agent 7.2.4; Cortex XDR agent 7.3 versions earlier than Cortex XDR agent 7.3.2.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2022-0012.
What is the title of this vulnerability?
The title of this vulnerability is 'An improper link resolution before file access vulnerability exists in the Palo Alto Networks Cortex XDR agent'.
What is the severity of CVE-2022-0012?
The severity of CVE-2022-0012 is high with a CVSS score of 7.1.
How does CVE-2022-0012 impact the system?
CVE-2022-0012 enables a local user to delete arbitrary system files and impact the system integrity or cause a denial of service condition.
Which software is affected by CVE-2022-0012?
The Palo Alto Networks Cortex XDR agent versions 5.0 to 5.0.12, 6.1 to 6.1.9, 7.2 to 7.2.4, and 7.3 to 7.3.2 are affected by CVE-2022-0012.
How can this vulnerability be fixed?
To fix this vulnerability, update the Palo Alto Networks Cortex XDR agent to a version that is not vulnerable.
Where can I find more information about CVE-2022-0012?
More information about CVE-2022-0012 can be found at the following link: https://security.paloaltonetworks.com/CVE-2022-0012