CVE-2026-0247: Prisma Access Agent Endpoint DLP: Authorization Bypass Vulnerabilities (Severity: MEDIUM)
Multiple authorization bypass vulnerabilities in the Endpoint DLP component of Prisma Access Agent® allow a local attacker to bypass authentication controls and execute privileged operations.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 26.2.1 - Upgrade
Upgrade
Prisma Access Agent (Endpoint DLP)to a version that resolves this vulnerability.Fixed in 26.2.1
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0247?
The severity of CVE-2026-0247 is classified as MEDIUM.
How do I fix CVE-2026-0247?
To fix CVE-2026-0247, update Palo Alto Networks Prisma Access Agent Endpoint DLP to version 26.2.1 or later.
What are the risks associated with CVE-2026-0247?
The risks associated with CVE-2026-0247 include unauthorized access and execution of privileged operations by local attackers.
Which products are affected by CVE-2026-0247?
CVE-2026-0247 affects Palo Alto Networks Prisma Access Agent Endpoint DLP, specifically versions up to 26.2.1.
Can macOS and Windows systems be impacted by CVE-2026-0247?
No, macOS and Windows systems are not vulnerable to CVE-2026-0247.