Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-2183

22
FAUCET Score

CVE-2025-2183 is an insufficient certificate validation vulnerability in the Palo Alto Networks GlobalProtect app. This flaw allows attackers to redirect the app to arbitrary servers, enabling a local non-administrative user or a same-subnet attacker to install malicious root certificates and subsequent malicious software on the endpoint. With a CVSS score of 5.3 (MEDIUM), the attack requires physical access or user interaction and can lead to high confidentiality and integrity impacts. There is currently no public exploit code, active exploitation, or significant community discussion surrounding this vulnerability.

Impacted Technologies

VendorProductVersion(s)CPE
Palo Alto NetworksGlobalProtect App
>= 6.2.0, < 11.1.10, >= 6.3.0, < 6.3.3, 6.0.0, 6.1.0CNA affecteddefault unaffected
Palo Alto NetworksGlobalProtect App
>= 6.2.0, < 6.2.8-h3 (6.2.8-c263), >= 6.3.0, < 6.3.3-h2 (6.3.3-c676), 6.0.0, 6.1.0CNA affecteddefault unaffected

CVSS Data

CVSS version used by this source: 4.0

5.3MEDIUM

CVSS:4.0/AV:P/AC:L/AT:P/PR:N/UI:P/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:U/V:D/RE:X/U:Amber

Attack Vector
PHYSICAL
Attack Complexity
LOW
Attack Requirements
PRESENT
Privileges Required
NONE
User Interaction
PASSIVE
VS Confidentiality
HIGH
VS Integrity
HIGH
VS Availability
NONE
SS Confidentiality
NONE
SS Integrity
NONE
SS Availability
NONE
Exploit Maturity
NOT_DEFINED
CvssVersion
4.0

Exploit Intelligence

EPSS Score
0.11%
Probability of exploitation in next 30 days
EPSS Percentile
1.6%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0011 is in the 23rd percentile among its peer group of 72 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.0 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (18)

astropatch availablevia llm_extracted
Fixed in: 6.3.3-h2 (6.3.3-c676) on Windows*, 6.3.3 on Linux, 6.2.8-h3 (6.2.8-c263) on Windows*, 6.0.12 on Windows*
View patch
asustorpatch availablevia llm_extracted
Fixed in: 6.0.12, 6.2.8-h3, 6.3.3, 6.3.3-h2
View patch
bigbluebuttonpatch availablevia llm_extracted
Fixed in: 6.3.3-h2
coollabspatch availablevia llm_extracted
Fixed in: 6.3.3-h2 (6.3.3-c676) on Windows*, 6.3.3 on Linux, 6.2.8-h3 (6.2.8-c263) on Windows*, 6.0.12 on Windows*
View patch
langgeniuspatch availablevia llm_extracted
Fixed in: 6.0.12, 6.2.8-h3, 6.3.3, 6.3.3-h2
View patch
lfedgepatch availablevia llm_extracted
Fixed in: 6.0.12 on Windows*, 6.2.8-c263 on Windows*, 6.3.3, 6.3.3-c676 on Windows*
View patch
linksyspatch availablevia llm_extracted
Fixed in: 6.3.3-h2 (6.3.3-c676) on Windows, 6.3.3 on Linux, 6.2.8-h3 (6.2.8-c263) on Windows, 6.0.12 on Windows
View patch
mattermostpatch availablevia llm_extracted
Fixed in: 6.3.3-h2
View patch
meshtasticpatch availablevia llm_extracted
Fixed in: 6.3.3-h2 (6.3.3-c676) on Windows*, 6.3.3 on Linux, 6.2.8-h3 (6.2.8-c263) on Windows*, 6.0.12 on Windows*
meterspherepatch availablevia llm_extracted
Fixed in: 6.3.3-h2 (6.3.3-c676), 6.3.3, 6.2.8-h3 (6.2.8-c263), 6.0.12
View patch
notaryprojectpatch availablevia llm_extracted
Fixed in: All, All on Android, All on iOS, All on macOS, >= 6.3.3-h2 (6.3.3-c676) on Windows*, >= 6.3.3 on Linux, >= 6.2.8-h3 (6.2.8-c263) on Windows*, None on Linux, None on Windows, None on Linux, >= 6.0.12 on Windows*, None on Linux
View patch
nvidiapatch availablevia llm_extracted
Fixed in: 6.3.3-h2, 6.3.3, 6.2.8-h3, 6.0.12
View patch
opensslpatch availablevia llm_extracted
Fixed in: 6.0.12, 6.2.8-h3 (6.2.8-c263), 6.3.3, 6.3.3-h2 (6.3.3-c676)
View patch
sitecorepatch availablevia llm_extracted
Fixed in: 6.3.3-h2
View patch
strapipatch availablevia llm_extracted
Fixed in: 6.0.12, 6.2.8-c263, 6.2.8-h3, 6.3.3, 6.3.3-c676, 6.3.3-h2
View patch
vantage6patch availablevia llm_extracted
Fixed in: 6.3.3-h2
View patch
wazuhpatch availablevia llm_extracted
Fixed in: ['6.3.3-h2 (6.3.3-c676)', '6.3.3', '6.2.8-h3 (6.2.8-c263)', '6.0.12']
View patch
paloaltovendor investigatingvia vendor_rss
View patch

Vendor Advisories (18)

paloaltopaloalto:security.paloaltonetworks.com/CVE-2025-2183MEDIUM

CVE-2025-2183 GlobalProtect App: Improper Certificate Validation Leads to Privilege Escalation (Severity: MEDIUM)

Aug 13, 2025
wazuhllm-wazuh-5b02689864e40943MEDIUM

CVE-2025-2183 GlobalProtect App: Improper Certificate Validation Leads to Privilege Escalation

Aug 13, 2025
coollabsllm-coollabs-63a0edc48a551587MEDIUM

CVE-2025-2183 GlobalProtect App: Improper Certificate Validation Leads to Privilege Escalation

Aug 13, 2025
bigbluebuttonllm-bigbluebutton-831b3f71a7590a94MEDIUM

CVE-2025-2183 GlobalProtect App: Improper Certificate Validation Leads to Privilege Escalation

Aug 13, 2025
sitecorellm-sitecore-3250037017392f94MEDIUM

GlobalProtect App: Improper Certificate Validation Leads to Privilege Escalation

Aug 13, 2025
notaryprojectllm-notaryproject-b240b56a753bce5aMEDIUM

CVE-2025-2183 GlobalProtect App: Improper Certificate Validation Leads to Privilege Escalation

Aug 13, 2025
linksysllm-linksys-452f24c5ae31de02MEDIUM

GlobalProtect App: Improper Certificate Validation Leads to Privilege Escalation

Aug 13, 2025
astrollm-astro-7f32e92ee4fa8aa2MEDIUM

CVE-2025-2183 GlobalProtect App: Improper Certificate Validation Leads to Privilege Escalation

Aug 13, 2025
vantage6llm-vantage6-1b8f1c237bd80b7aMEDIUM

CVE-2025-2183 GlobalProtect App: Improper Certificate Validation Leads to Privilege Escalation

Aug 13, 2025
strapillm-strapi-dca34ae37161c31cMEDIUM

GlobalProtect App: Improper Certificate Validation Leads to Privilege Escalation

Aug 13, 2025
opensslllm-openssl-3f86d09aeee8401eMEDIUM

GlobalProtect App: Improper Certificate Validation Leads to Privilege Escalation

Aug 13, 2025
nvidiallm-nvidia-709d868122c68628MEDIUM

CVE-2025-2183 GlobalProtect App: Improper Certificate Validation Leads to Privilege Escalation

Aug 13, 2025
asustorllm-asustor-782cc6faadd29f14MEDIUM

GlobalProtect App: Improper Certificate Validation Leads to Privilege Escalation

Aug 13, 2025
meterspherellm-metersphere-7e9a12edb6498edcMEDIUM

GlobalProtect App: Improper Certificate Validation Leads to Privilege Escalation

Aug 13, 2025
lfedgellm-lfedge-69b8076b19918a71MEDIUM

GlobalProtect App: Improper Certificate Validation Leads to Privilege Escalation

Aug 13, 2025
meshtasticllm-meshtastic-38d4221a4febaeefMEDIUM

CVE-2025-2183 GlobalProtect App: Improper Certificate Validation Leads to Privilege Escalation

Aug 13, 2025
langgeniusllm-langgenius-33d3b404dbcb2339MEDIUM

CVE-2025-2183 GlobalProtect App: Improper Certificate Validation Leads to Privilege Escalation

Aug 13, 2025
mattermostllm-mattermost-435911f1a4a2f213MEDIUM

GlobalProtect App: Improper Certificate Validation Leads to Privilege Escalation

Aug 13, 2025

References

security.paloaltonetworks.com / CVE-2025-2183