A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on Windows allows a local Windows administrator to disable the agent. This issue may be leveraged by malware to perform malicious activity without detection.
| Vendor | Product | Versions |
|---|---|---|
| palo alto | cortex xdr agent | 9.0, 8.9, 8.7-CE, 8.3-CE, 7.9-CE |
Updated affected versions to include 5.10.13, 8.8, and 9.0.0, changed severity to HIGH, and noted that no exploit is available.
Initial creation