[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249461

 
 

909

 
 

195508

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Privilege escalation vulnerability in GlobalProtect Agent - CVE-2024-2431 (MacOS X)

ID: oval:org.secpod.oval:def:99434Date: (C)2024-04-23   (M)2024-04-23
Class: VULNERABILITYFamily: macos




The host is installed with GlobalProtect Agent 5.1.x before 5.1.12, 5.2.x before 5.2.13, 6.0.x before 6.0.4, or 6.1.x before 6.1.1 and is prone to a privilege escalation vulnerability. A flaw is present in the application, which fails to handle a malicious passcode. Successful exploitation allows a non-privileged attacker to disable the GlobalProtect app without needing the passcode in configurations that allow a user to disable GlobalProtect.

Platform:
Apple Mac OS 14
Apple Mac OS 13
Apple Mac OS 12
Apple Mac OS 11
Apple Mac OS X 10.15
Apple Mac OS X 10.10
Apple Mac OS X 10.11
Apple Mac OS X 10.12
Apple Mac OS X 10.13
Apple Mac OS X 10.14
Product:
GlobalProtect Agent
Reference:
CVE-2024-2431
CVE    1
CVE-2024-2431

© SecPod Technologies