CVE-2019-17435 is a vulnerability in Palo Alto Networks Globalprotect
Published on October 16, 2019
A Local Privilege Escalation vulnerability exists in the GlobalProtect Agent for Windows 5.0.3 and earlier, and GlobalProtect Agent for Windows 4.1.12 and earlier, in which the auto-update feature can allow for modification of a GlobalProtect Agent MSI installer package on disk before installation.
Products Associated with CVE-2019-17435
Want to know whenever a new CVE is published for Palo Alto Networks Globalprotect? stack.watch will email you.
Affected Versions
Palo Alto Networks GlobalProtect Agent for Windows:- Version 5.0.3 and earlier is affected.
- Version 4.1.12 and earlier is affected.
Exploit Probability
EPSS
0.04%
Percentile
13.23%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.