CVE-2017-15870 describes a privilege escalation vulnerability in Palo Alto Networks GlobalProtect Agent versions prior to 4.0.3. An attacker with local administration rights can exploit "image path execution hijacking" to gain SYSTEM privileges. This medium-severity flaw (CVSS 6.7) has a local attack vector and low complexity, allowing for high impact on confidentiality, integrity, and availability. There is no evidence of active exploitation, public exploit code, or significant community discussion, though it did receive limited media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 4.0.2CPE matchmatch criteria | cpe:2.3:a:paloaltonetworks:globalprotect:*:*:*:*:*:mac_os_x:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.