Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-0141

25
FAUCET Score

CVE-2025-0141 describes an incorrect privilege assignment vulnerability in the Palo Alto Networks GlobalProtect App, specifically affecting macOS and Linux, and Windows platforms. This flaw allows a locally authenticated non-administrative user to escalate their privileges to root on macOS/Linux or NT AUTHORITY\SYSTEM on Windows. With a CVSS score of 8.4 (High), this vulnerability has a low attack complexity and requires local access, but can lead to significant impacts on system integrity and confidentiality. Currently, there is no public exploit code available, no evidence of active exploitation, and minimal community discussion or media coverage, indicating a low immediate threat level.

Impacted Technologies

VendorProductVersion(s)CPE
Palo Alto NetworksGlobalProtect App
>= 6.2.0, < 6.2.8, 6.0.0, 6.1.0CNA affecteddefault unaffected
Palo Alto NetworksGlobalProtect App
>= 6.2.0, < 6.2.8-h2 (6.2.8-c243), >= 6.3.0, < 6.3.3-h1 (6.3.3-c650), 6.0.0, 6.1.0CNA affecteddefault unaffected

CVSS Data

CVSS version used by this source: 4.0

8.4HIGH

CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:H/VA:N/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:U/V:D/RE:M/U:Amber

Attack Vector
LOCAL
Attack Complexity
LOW
Attack Requirements
NONE
Privileges Required
LOW
User Interaction
NONE
VS Confidentiality
NONE
VS Integrity
HIGH
VS Availability
NONE
SS Confidentiality
HIGH
SS Integrity
HIGH
SS Availability
HIGH
Exploit Maturity
NOT_DEFINED
CvssVersion
4.0

Exploit Intelligence

EPSS Score
0.17%
Probability of exploitation in next 30 days
EPSS Percentile
6.2%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0017 is in the 27th percentile among its peer group of 17,070 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (4)

lfedgepatch availablevia llm_extracted
Fixed in: 6.0.12 on macOS, 6.0.12 on Windows, 6.2.8 on Linux, 6.2.8-c243 on macOS, 6.2.8-c243 on Windows, 6.3.3-c650 on macOS, 6.3.3-c650 on Windows
View patch
linksyspatch availablevia llm_extracted
Fixed in: 6.3.3-h1 (6.3.3-c650) on macOS, 6.3.3-h1 (6.3.3-c650) on Windows, 6.2.8-h2 (6.2.8-c243) on macOS, 6.2.8-h2 (6.2.8-c243) on Windows, 6.2.8 on Linux, 6.0.12 on macOS, 6.0.12 on Windows
View patch
notaryprojectpatch availablevia llm_extracted
Fixed in: All on Android, All on Chrome OS, All on iOS, >= 6.3.3-h1 (6.3.3-c650) on macOS, >= 6.3.3-h1 (6.3.3-c650) on Windows, >= 6.2.8-h2 (6.2.8-c243) on macOS, >= 6.2.8-h2 (6.2.8-c243) on Windows, >= 6.2.8 on Linux, None on macOS, None on Windows, None on Linux,
View patch
wazuhpatch availablevia llm_extracted
Fixed in: ['6.3.3-h1 (6.3.3-c650)', '6.3.3-h1 (6.3.3-c650)', '6.2.8-h2 (6.2.8-c243)', '6.2.8-h2 (6.2.8-c243)', '6.2.8', '6.0.12', '6.0.12']
View patch

Vendor Advisories (4)

wazuhllm-wazuh-8f966063b8f9c82aMEDIUM

CVE-2025-0141 GlobalProtect App: Privilege Escalation (PE) Vulnerability

Jul 9, 2025
notaryprojectllm-notaryproject-925164a9476acc16MEDIUM

CVE-2025-0141 GlobalProtect App: Privilege Escalation (PE) Vulnerability

Jul 9, 2025
linksysllm-linksys-7044846d2f2fa80dMEDIUM

GlobalProtect App: Privilege Escalation (PE) Vulnerability

Jul 9, 2025
lfedgellm-lfedge-eb7a7e746232feb4MEDIUM

GlobalProtect App: Privilege Escalation (PE) Vulnerability

Jul 9, 2025

References

security.paloaltonetworks.com / CVE-2025-0141