CVE-2023-3280: Cortex XDR Agent: Local Windows User Can Disable the Agent
A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices allows a local user to disable the agent.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-3280?
The severity of CVE-2023-3280 is medium, with a severity value of 5.5.
How does the vulnerability in CVE-2023-3280 affect Palo Alto Networks Cortex XDR Agent on Windows devices?
The vulnerability in CVE-2023-3280 allows a local user to disable the Palo Alto Networks Cortex XDR Agent on Windows devices.
Which versions of Palo Alto Networks Cortex XDR Agent are affected by CVE-2023-3280?
Versions 5.0 to 5.0.12.22203, 7.9.0 to 7.9.2, 7.9.0 to 7.9.100, and 8.0.0 to 8.0.1 of Palo Alto Networks Cortex XDR Agent are affected by CVE-2023-3280.
How can I fix the vulnerability in CVE-2023-3280?
To fix the vulnerability in CVE-2023-3280, it is recommended to update Palo Alto Networks Cortex XDR Agent to a version that is not vulnerable.
Where can I find more information about CVE-2023-3280?
You can find more information about CVE-2023-3280 at the following link: [CVE-2023-3280](https://security.paloaltonetworks.com/CVE-2023-3280)