Description
An improper file signature check in Palo Alto Networks Cortex XDR agent may allow an attacker to bypass the Cortex XDR agent's executable blocking capabilities and run untrusted executables on the device. This issue can be leveraged to execute untrusted software without being detected or blocked.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
This issue is fixed in Cortex XDR agent 7.9.102-CE, Cortex XDR agent 8.1.3, Cortex XDR agent 8.2.2, and all later Cortex XDR agent versions.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-47044 | An improper file signature check in Palo Alto Networks Cortex XDR agent may allow an attacker to bypass the Cortex XDR agent's executable blocking capabilities and run untrusted executables on the device. This issue can be leveraged to execute untrusted software without being detected or blocked. |
References
| Link | Providers |
|---|---|
| https://security.paloaltonetworks.com/CVE-2024-5912 |
|
History
No history.
Subscriptions
No data.
Status: PUBLISHED
Assigner: palo_alto
Published:
Updated: 2024-08-01T21:25:03.178Z
Reserved: 2024-06-12T15:27:56.188Z
Link: CVE-2024-5912
Updated: 2024-08-01T21:25:03.178Z
Status : Deferred
Published: 2024-07-10T19:15:11.697
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-5912
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD