CVE-2025-4617: Prisma Browser: Insufficient Policy Enforcement Vulnerability in Prisma Browser
An insufficient policy enforcement vulnerability in Palo Alto Networks Prisma® Browser on Windows allows a locally authenticated non-admin user to bypass the screenshot control feature of the browser.
Browser self-protection should be enabled to mitigate this issue.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Enable Prisma Browser self-protection to mitigate the insufficient policy enforcement vulnerability that allows non-admin users to bypass the screenshot control feature.
Palo Alto Networks Prisma Browser (Windows) Browser self-protection = enabled
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4617?
CVE-2025-4617 is considered a medium severity vulnerability due to its potential impact on privacy and security.
How do I fix CVE-2025-4617?
To fix CVE-2025-4617, ensure that browser self-protection is enabled in the Palo Alto Networks Prisma Browser settings.
Who is affected by CVE-2025-4617?
CVE-2025-4617 affects locally authenticated non-admin users of the Palo Alto Networks Prisma Browser on Windows.
What is the nature of the vulnerability in CVE-2025-4617?
CVE-2025-4617 is an insufficient policy enforcement vulnerability that allows users to bypass the screenshot control feature.
Is CVE-2025-4617 specific to any software versions?
CVE-2025-4617 affects the Palo Alto Networks Prisma Browser without specifying particular version restrictions.