A vulnerability with a privilege management mechanism in...
High severity
Unreviewed
Published
Apr 11, 2025
to the GitHub Advisory Database
•
Updated Apr 11, 2025
Description
Published by the National Vulnerability Database
Apr 11, 2025
Published to the GitHub Advisory Database
Apr 11, 2025
Last updated
Apr 11, 2025
A vulnerability with a privilege management mechanism in the Palo Alto Networks GlobalProtect™ app on Windows devices allows a locally authenticated non-administrative Windows user to escalate their privileges to NT AUTHORITY\SYSTEM. However, execution requires that the local user can also successfully exploit a race condition, which makes this vulnerability difficult to exploit.
References