CVE-2025-4234: Cortex XDR Microsoft 365 Defender Pack: Cleartext Exposure of Credentials (Severity: LOW)
A problem with the Palo Alto Networks Cortex XDR Microsoft 365 Defender Pack can result in exposure of user credentials in application logs. Normally, these application logs are only viewable by local users and are included when generating logs for troubleshooting purposes. This means that these credentials are exposed to recipients of the application logs.
Affected Software
Remediation
Mitigation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4234?
CVE-2025-4234 is considered a medium severity vulnerability due to the potential exposure of user credentials.
How do I fix CVE-2025-4234?
To fix CVE-2025-4234, upgrade the Palo Alto Networks Cortex XDR Microsoft 365 Defender Pack to version 4.6.5 or later.
What type of information is exposed in CVE-2025-4234?
CVE-2025-4234 exposes user credentials in application logs that are intended to be viewable only by local users.
What software is affected by CVE-2025-4234?
CVE-2025-4234 affects the Palo Alto Networks Cortex XDR Microsoft 365 Defender Pack version 4.6.0.
Who is responsible for addressing CVE-2025-4234?
It is the responsibility of users and administrators of affected systems to apply the necessary updates to mitigate CVE-2025-4234.