VYPR
High severity7.8NVD Advisory· Published Oct 9, 2024· Updated Jun 17, 2026

CVE-2024-9473

CVE-2024-9473

Description

A privilege escalation vulnerability in the Palo Alto Networks GlobalProtect app on Windows allows a locally authenticated non-administrative Windows user to escalate their privileges to NT AUTHORITY/SYSTEM through the use of the repair functionality offered by the .msi file used to install GlobalProtect.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • cpe:2.3:a:paloaltonetworks:globalprotect:*:*:*:*:*:windows:*:*+ 4 more
    • cpe:2.3:a:paloaltonetworks:globalprotect:*:*:*:*:*:windows:*:*range: >=5.1,<6.2.5
    • cpe:2.3:a:paloaltonetworks:globalprotect:6.3.0:*:*:*:*:windows:*:*
    • cpe:2.3:a:paloaltonetworks:globalprotect:6.3.1:*:*:*:*:windows:*:*
    • cpe:2.3:a:paloaltonetworks:globalprotect_app:6.3.1:-:*:*:*:*:*:*range: 5.1
    • (no CPE)

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.