High severity7.8NVD Advisory· Published Oct 9, 2024· Updated Jun 17, 2026
CVE-2024-9473
CVE-2024-9473
Description
A privilege escalation vulnerability in the Palo Alto Networks GlobalProtect app on Windows allows a locally authenticated non-administrative Windows user to escalate their privileges to NT AUTHORITY/SYSTEM through the use of the repair functionality offered by the .msi file used to install GlobalProtect.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:paloaltonetworks:globalprotect:*:*:*:*:*:windows:*:*+ 4 more
- cpe:2.3:a:paloaltonetworks:globalprotect:*:*:*:*:*:windows:*:*range: >=5.1,<6.2.5
- cpe:2.3:a:paloaltonetworks:globalprotect:6.3.0:*:*:*:*:windows:*:*
- cpe:2.3:a:paloaltonetworks:globalprotect:6.3.1:*:*:*:*:windows:*:*
- cpe:2.3:a:paloaltonetworks:globalprotect_app:6.3.1:-:*:*:*:*:*:*range: 5.1
- (no CPE)
Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.