Vulnerabilities > Paloaltonetworks > Globalprotect > Low

DATE CVE VULNERABILITY TITLE RISK
2020-04-08 CVE-2020-1987 Information Exposure Through Log Files vulnerability in Paloaltonetworks Globalprotect
An information exposure vulnerability in the logging component of Palo Alto Networks Global Protect Agent allows a local authenticated user to read VPN cookie information when the troubleshooting logging level is set to "Dump".
local
low complexity
paloaltonetworks CWE-532
3.3
2019-04-09 CVE-2019-1573 Missing Encryption of Sensitive Data vulnerability in Paloaltonetworks Globalprotect 4.1.0/4.1.10
GlobalProtect Agent 4.1.0 for Windows and GlobalProtect Agent 4.1.10 and earlier for macOS may allow a local authenticated attacker who has compromised the end-user account and gained the ability to inspect memory, to access authentication and/or session tokens and replay them to spoof the VPN session and gain access as the user.
local
high complexity
paloaltonetworks CWE-311
2.5