Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-2179

22
FAUCET Score

CVE-2025-2179 describes an incorrect privilege assignment vulnerability in the Palo Alto Networks GlobalProtect App on Linux. This flaw allows a local, non-administrative user to disable the application, bypassing intended configuration restrictions. The vulnerability carries a CVSS 4.0 score of 6.8 (Medium), indicating that an attacker with local access can achieve high availability impact by disabling the VPN client. Currently, there is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.

Impacted Technologies

VendorProductVersion(s)CPE
Palo Alto NetworksGlobalProtect App
>= 6.2.0, < 6.2.9, 6.0.0, 6.1.0CNA affecteddefault unaffected

CVSS Data

CVSS version used by this source: 4.0

6.8MEDIUM

CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:U/V:D/RE:M/U:Amber

Attack Vector
LOCAL
Attack Complexity
LOW
Attack Requirements
NONE
Privileges Required
LOW
User Interaction
NONE
VS Confidentiality
NONE
VS Integrity
NONE
VS Availability
HIGH
SS Confidentiality
NONE
SS Integrity
NONE
SS Availability
NONE
Exploit Maturity
NOT_DEFINED
CvssVersion
4.0

Exploit Intelligence

EPSS Score
0.13%
Probability of exploitation in next 30 days
EPSS Percentile
2.7%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0013 is in the 18th percentile among its peer group of 15,940 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (17)

astropatch availablevia llm_extracted
Fixed in: 6.2.9 on Linux
View patch
asustorpatch availablevia llm_extracted
Fixed in: 6.2.9
View patch
bigbluebuttonpatch availablevia llm_extracted
Fixed in: 6.2.9
coollabspatch availablevia llm_extracted
Fixed in: 6.2.9 on Linux
View patch
langgeniuspatch availablevia llm_extracted
Fixed in: 6.2.9
View patch
lfedgepatch availablevia llm_extracted
Fixed in: 6.2.9 on Linux
View patch
linksyspatch availablevia llm_extracted
Fixed in: 6.2.9 on Linux
View patch
mattermostpatch availablevia llm_extracted
Fixed in: 6.2.9
View patch
meshtasticpatch availablevia llm_extracted
Fixed in: 6.2.9 on Linux
meterspherepatch availablevia llm_extracted
Fixed in: 6.2.9
View patch
notaryprojectpatch availablevia llm_extracted
Fixed in: All on Android, All on Chrome OS, All on iOS, All on Windows, All on macOS, >= 6.2.9 on Linux, None on Linux, None on Linux, All
View patch
nvidiapatch availablevia llm_extracted
Fixed in: 6.2.9
View patch
opensslpatch availablevia llm_extracted
Fixed in: 6.2.9
View patch
sitecorepatch availablevia llm_extracted
Fixed in: 6.2.9
View patch
strapipatch availablevia llm_extracted
Fixed in: 6.2.9
View patch
vantage6patch availablevia llm_extracted
Fixed in: 6.2.9
View patch
wazuhpatch availablevia llm_extracted
Fixed in: ['6.2.9']
View patch

Vendor Advisories (17)

wazuhllm-wazuh-e825bc9e874cbec5MEDIUM

CVE-2025-2179 GlobalProtect App: Non Admin User Can Disable the GlobalProtect App

Jul 28, 2025
coollabsllm-coollabs-a1cbfcd667804f9fMEDIUM

CVE-2025-2179 GlobalProtect App: Non Admin User Can Disable the GlobalProtect App

Jul 28, 2025
bigbluebuttonllm-bigbluebutton-e61cd61067423685MEDIUM

CVE-2025-2179 GlobalProtect App: Non Admin User Can Disable the GlobalProtect App

Jul 28, 2025
sitecorellm-sitecore-1853f7eb810d3e2dMEDIUM

GlobalProtect App: Non Admin User Can Disable the GlobalProtect App

Jul 28, 2025
notaryprojectllm-notaryproject-d2fcc5e4da9e81e3MEDIUM

CVE-2025-2179 GlobalProtect App: Non Admin User Can Disable the GlobalProtect App

Jul 28, 2025
linksysllm-linksys-0819c48d616d61ddMEDIUM

GlobalProtect App: Non Admin User Can Disable the GlobalProtect App

Jul 28, 2025
astrollm-astro-d4ee568e969dfa87MEDIUM

CVE-2025-2179 GlobalProtect App: Non Admin User Can Disable the GlobalProtect App

Jul 28, 2025
vantage6llm-vantage6-337197f510eb91f9MEDIUM

CVE-2025-2179 GlobalProtect App: Non Admin User Can Disable the GlobalProtect App

Jul 28, 2025
strapillm-strapi-35cfea1e3c694e9dMEDIUM

GlobalProtect App: Non Admin User Can Disable the GlobalProtect App

Jul 28, 2025
opensslllm-openssl-a8478dd1908615ebMEDIUM

GlobalProtect App: Non Admin User Can Disable the GlobalProtect App

Jul 28, 2025
nvidiallm-nvidia-8c22229e2f2f24b4MEDIUM

CVE-2025-2179 GlobalProtect App: Non Admin User Can Disable the GlobalProtect App

Jul 28, 2025
asustorllm-asustor-dd22f286e45d336aMEDIUM

GlobalProtect App: Non Admin User Can Disable the GlobalProtect App

Jul 28, 2025
meterspherellm-metersphere-e16685ee12d49a19MEDIUM

GlobalProtect App: Non Admin User Can Disable the GlobalProtect App

Jul 28, 2025
lfedgellm-lfedge-0acec61e28fabbb6MEDIUM

GlobalProtect App: Non Admin User Can Disable the GlobalProtect App

Jul 28, 2025
meshtasticllm-meshtastic-dedd87eb0cd9690cMEDIUM

CVE-2025-2179 GlobalProtect App: Non Admin User Can Disable the GlobalProtect App

Jul 28, 2025
langgeniusllm-langgenius-b91207e5dc7606f5MEDIUM

CVE-2025-2179 GlobalProtect App: Non Admin User Can Disable the GlobalProtect App

Jul 28, 2025
mattermostllm-mattermost-80ab370cb8d7ec50MEDIUM

GlobalProtect App: Non Admin User Can Disable the GlobalProtect App

Jul 28, 2025

References

security.paloaltonetworks.com / CVE-2025-2179