Vulnerabilities > Paloaltonetworks > Cortex XDR Agent > 7.5.101

DATE CVE VULNERABILITY TITLE RISK
2023-02-08 CVE-2023-0001 Cleartext Transmission of Sensitive Information vulnerability in Paloaltonetworks Cortex XDR Agent 7.5/7.5.101
An information exposure vulnerability in the Palo Alto Networks Cortex XDR agent on Windows devices allows a local system administrator to disclose the admin password for the agent in cleartext, which bad actors can then use to execute privileged cytool commands that disable or uninstall the agent.
local
low complexity
paloaltonetworks CWE-319
6.7