CVE-2024-9473: GlobalProtect App: Local Privilege Escalation (PE) Vulnerability (Severity: LOW)
A privilege escalation vulnerability in the Palo Alto Networks GlobalProtect app on Windows allows a locally authenticated non-administrative Windows user to escalate their privileges to NT AUTHORITY/SYSTEM through the use of the repair functionality offered by the .msi file used to install GlobalProtect.
Affected Software
Remediation
Information
Mitigation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-9473?
CVE-2024-9473 is a critical privilege escalation vulnerability that can allow a non-administrative user to gain NT AUTHORITY/SYSTEM privileges.
How do I fix CVE-2024-9473?
To mitigate CVE-2024-9473, it is recommended to upgrade the Palo Alto Networks GlobalProtect app to the latest version that addresses this vulnerability.
Which versions of Palo Alto Networks GlobalProtect are affected by CVE-2024-9473?
CVE-2024-9473 affects Palo Alto Networks GlobalProtect versions from 5.1 to 6.2.5 and specifically includes versions 6.3.0 and 6.3.1.
Can CVE-2024-9473 be exploited remotely?
No, CVE-2024-9473 can only be exploited by a locally authenticated user on a Windows system.
What types of systems are vulnerable to CVE-2024-9473?
CVE-2024-9473 specifically affects the Palo Alto Networks GlobalProtect app installed on Windows operating systems.