CVE-2024-9469

MEDIUM

Paloaltonetworks Cortex Xdr Agent < 7.9.102 - Improper Condition Check

Title source: rule
STIX 2.1

Description

A problem with a detection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices enables a user with Windows non-administrative privileges to disable the agent. This issue may be leveraged by malware to disable the Cortex XDR agent and then to perform malicious activity.

Scores

CVSS v3 5.5
EPSS 0.0008
EPSS Percentile 24.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-754
Status published
Products (3)
paloaltonetworks/cortex_xdr_agent 8.3.0
paloaltonetworks/cortex_xdr_agent 8.4.0
paloaltonetworks/cortex_xdr_agent 7.9 - 7.9.102
Published Oct 09, 2024
Tracked Since Feb 18, 2026