Palo Alto Networks Prisma Access Agent Information Disclosure Vulnerability
Vulnerability
Multiple information disclosure vulnerabilities exist in the Prisma Access Agent on macOS and Windows, prior to version 26.2.1. These vulnerabilities allow a local user to access sensitive configuration data and credentials. The issue does not affect the Prisma Access Agent on Linux, ChromeOS, Android, or iOS.
Impact
Exploitation of these vulnerabilities could lead to unauthorized access to sensitive information, including configuration data and credentials.
Remediation
Users of the Prisma Access Agent on Windows or macOS should upgrade to version 26.2.1 or later. No action is needed for users on Linux, Android, ChromeOS, or iOS.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
