Vulnerabilities > Paloaltonetworks > Cortex XDR Agent > 7.1

DATE CVE VULNERABILITY TITLE RISK
2020-12-09 CVE-2020-2049 Uncontrolled Search Path Element vulnerability in Paloaltonetworks Cortex XDR Agent 7.1/7.1.2/7.2
A local privilege escalation vulnerability exists in Palo Alto Networks Cortex XDR Agent on the Windows platform that allows an authenticated local Windows user to execute programs with SYSTEM privileges.
local
low complexity
paloaltonetworks CWE-427
7.2
2020-12-09 CVE-2020-2020 Improper Handling of Exceptional Conditions vulnerability in Paloaltonetworks Cortex XDR Agent
An improper handling of exceptional conditions vulnerability in Cortex XDR Agent allows a local authenticated Windows user to create files in the software's internal program directory that prevents the Cortex XDR Agent from starting.
local
low complexity
paloaltonetworks CWE-755
2.1